IT Security, Risks and Controls 3 Flashcards

1
Q

Operations process goals should ensure:

A

1) effectiveness of operations
2) efficient resources
3) security of resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

effectiveness of operations

A

strives to ensure that an intended process is fulfilling its intended purpose (such as proper management authorization for overrides)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

efficient resources

A

to have enough resources to ensure benefits of controls exceed the costs of those controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

security of resources

A

protect all tangible and intangible resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Validity checks and input controls vs authentication

A

Validity checks and input controls - ensure only valid data are entered.

Authentication controls - ensure authorized use of applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Methods to control access to appropriate users are

A

1) passwords and user IDs
2) menus for end-user computing access databases
3) independent review of transactions,
4) restricting user ability to load data,
5) requirement of appropriate validation
6) authorization
7) reporting control when the end user uploads data and recording access to company databases by the EUC application

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Methods to control Computer Operations access to programs and data include

A

1) Segregation controls
2) backup and recovery
3) contingency processing
4) file protection rings
5) internal and external labels

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Risks associated with End User Computing (EUC)

A

1) Management does not review results of applications appropriately
2) More personnel need to understand control concepts
3) End user applications are not always tested before implimented

How well did you know this?
1
Not at all
2
3
4
5
Perfectly