IT Flashcards

1
Q

Acquire and Implement

A

the process of identifying automated solutions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is COBIT

A

The Control Objectives for Info and Related Technology. Int’t standard for identifying best practices in IT security and control.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Monitor and evaluate

A

Regularly assess IT processes.
The process of reviewing system response time logs.
Assessment over time.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Deliver and support

A

the process of security and continuous services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the purpose of COBIT?

A

common language for users, auditors, mgmt, and business process owners in identifying risks and structuring controls.
Aligns IT & Biz goals/strategies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the components of the basic COBIT framework?

A
IT Resources
Plan & Organize
Acquire & Implement
Deliver & Support
Monitor & Evaluate
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is included in IT Resources

A
Data
Applications Systems
Technology
Facilities
People
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Plan and organize

A

the process of developing tactics to realize the strategic vision for an info tech unit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Enterprise Resource Planning system

A

Provides transaction processing, mgmt support, and decision-making support in a single, integrated package. It attempts to eliminate many of the problems faced by orgs when they attempt to consolidate info from operations in multiple dept/divisions by integrating all data/processes into a unified system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are risks of cloud-based computing

A

Data Loss
Vendor security failure
System hacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the ERP system designed to do?

A

to integrate data from all aspects of an org’s acitivities into a centralized data repository.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

OLAP Online Analytical Processing System

A

provides data warehouse capabilities and data mining for the ERP system. Provides an integrated view of transactions in all parts of the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Online transaction processing system (OLTP)

A

Includes core biz functions: sales, production, purchasing, payroll, fin. reporting. Records the day to day operational transactions and enhances the visibility of these transactions throughout the system. Primarily concerned with collecting data and not analyzing it across the org.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

PaaS (platform as a service)

A

use of the cloud to create (not access) software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

IaaS (infrastructure as a service)

A

Use of the cloud to access virtual hardware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

SaaS (software as a service)

A

Use of the cloud to access software

17
Q

What are the risks of a cloud-based system

A

Data loss - all eggs in one basket.
system penetration
in the vendor you trust

18
Q

What are the backup facility types?

A

cold site - no computers $
warm site - computers, no data $$
hot site - everything $$$
mirrored - fully redundant $$$$

19
Q

What tasks are given top priority in DRP?

A

mission critical tasks - which includes, customer facing services
manufacturing
financials

20
Q

What tasks are given the lowest priority in DRP?

A

Task critical

21
Q

What type of recovery would help a company recover from a disaster and ensure a timely recovery?

A

Business continuity planning.

22
Q

What info does one need to prepare a DRP?

A

Names and locations of key vendors
Current hardware configuration
Names of team members
Alternative processing location

23
Q

Cold site

A

hardware and records are delivered AFTER the occurrence of a disaster.

24
Q

What is a logical first step in developing a disaster relief plan?

A

Prepare a statement of responsibilities for the tasks included in the DRP

25
Q

OCP (organizational continuity planning)

A

identify and plan for disruptions.

Integrate OCP into risk mgmt

26
Q

What does the term “stakeholders” reference in an IT environment

A

include both the IT personnel responsible for developing and maintaining the system, as well as the personnel from all areas of the org, who are the end users of the system.

27
Q

Who is responsible for granting users access to specific data resources?

A

database administrator - est user names and authorizing access to specific data files and fields

28
Q

Who maintains the custody of an entitys data

A

the data librarian

29
Q

What is the role of a systems analyst in an IT environment?

A

Designing systems, prepares specifications for programmers, and serves as intermediary between users and programmers

30
Q

Most IT people controls are

A

General and preventive

31
Q

What is the responsibility of a network administrator?

A

managing remote access

32
Q

What is the responsibility of the app programmer?

A

code approved changes to a payroll program

33
Q

Who controls the flow of documents in and out of the computer operations dept?

A

the data control clerk