Question 641
Which of the following should be defined in an audit charter?
Question 642
Which of the following is the BEST source of information for assessing the effectiveness of IT process monitoring?
Question 643
An organization's IT security policy states that user IDs must uniquely identify individuals and that users should not disclose their passwords. An IS auditor discovers that several generic user IDs are being used.
Which of the following is the MOST appropriate course of action for the auditor?
Question 644
An IS auditor has been asked to audit a complex system with computerized and manual elements. Which of the following should be identified FIRST?
Question 645
Which of the following BEST Indicates that an incident management process is effective?
