Question 31
An off-site processing facility should be easily identifiable externally because easy identification helps
ensure smoother recovery. True or false?
Question 32
An organization decides to establish a formal incident response capability with clear roles and responsibilities facilitating centralized reporting of security incidents. Which type of control is being implemented?
Question 33
Which of the following is the MOST important IS audit consideration when an organization outsources a customer credit review system to a third-party service provider? The provider:
Question 34
Which of the following are BIST suited for continuous auditing?
Question 35
For an organization which uses a VoIP telephony system exclusively, the GREATEST concern associated with leaving a connected telephone in an unmonitored public area is the possibility of:
