After identifying potential security vulnerabilities, what should be the IS auditor's next step?

CISA - 5

Quiz
•
Professional Development
•
Professional Development
•
Easy
gopi venketesan
Used 1+ times
FREE Resource
10 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
To evaluate potential countermeasures and compensatory controls
To implement effective countermeasures and compensatory controls
To perform a business impact analysis of the threats that would exploit
the vulnerabilities
To immediately advise senior management of the findings
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following is the BEST method for preventing the leakage of confidential information from a laptop computer?
Encrypt the hard disk with the owner's public key
Enable the boot password (hardware-based password)
Use a biometric authentication device
Use two-factor authentication to logon to the notebook
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
The MOST important difference between hashing and encryption is that hashing:
Is irreversible
Output is the same length as the original message
Is concerned with integrity and security
Is the same at the sending and receiving end
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following cryptography options would increase overhead/cost?
A use of symmetric encryption keys instead of asymmetric
A use of long asymmetric encryption keys
The hash is encrypted rather than the message
A use of secret key
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following would be of the MOST concern to an IS auditor reviewing a virtual private network (VPN) implementation? Computers on the network are located:
On the enterprise internal network
At the backup site
In employees' homes
At the enterprise's remote offices
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
The PRIMARY reason for using digital signatures is to ensure data:
Confidentiality
Integritiy
Availability
Timeliness
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following is an example of a passive attack initiated through the Internet?
Traffic analysis
Masquerading
Denial of service
E-mail spoofing
Create a free account and access millions of resources
Similar Resources on Quizizz
10 questions
All-New Civic Exam

Quiz
•
Professional Development
11 questions
LOCKOUT TAGOUT FOR AUTHORIZED EMPLOYEES

Quiz
•
Professional Development
12 questions
PORTAFOLIO PRODUCTO 2024

Quiz
•
Professional Development
15 questions
All-In-One Project+ PK0-005 Exam Guide - Chapter 05

Quiz
•
Professional Development
13 questions
Identity and Access Management

Quiz
•
Professional Development
15 questions
Govt. Initiatives

Quiz
•
Professional Development
10 questions
REFRESH PERSONAL LOCK HOLDER

Quiz
•
Professional Development
13 questions
Ethical Hacking Essentials

Quiz
•
Professional Development
Popular Resources on Quizizz
20 questions
math review

Quiz
•
4th Grade
20 questions
Math Review - Grade 6

Quiz
•
6th Grade
20 questions
Reading Comprehension

Quiz
•
5th Grade
20 questions
Types of Credit

Quiz
•
9th - 12th Grade
20 questions
Taxes

Quiz
•
9th - 12th Grade
10 questions
Human Body Systems and Functions

Interactive video
•
6th - 8th Grade
19 questions
Math Review

Quiz
•
3rd Grade
45 questions
7th Grade Math EOG Review

Quiz
•
7th Grade