wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

IT General Control

Total questions: 10

Worksheet time: 8mins

Name
Class
Date
1.

Select 2 (two) examples of strong password security control

a)

Configurable password length, minimum 8 characters

b)

Enforce password history. It should not be possible to re-use last 5 passwords

c)

Configurable password age, maximum of 120 days

d)

Password must appear in any audit trail or logs

2.

What are the 2 main topics that we covered under ITGC Awareness #1 - Access Control Best Practices?

a)

System Access Control & Hardware Access Control

b)

System Access Control & Physical Access Control

c)

Hardware Access Control & Physical Access Control

d)

Password Controls & Equipment Security

3.

Requirement gathering & analysis is the first activity in SDLC where Business and IT stakeholders provide functional and technical requirements which are agreed and signed off.


Which of the following details the correct flow for Requirement Gathering & Analysis process?

a)

Develop Requirements > Document Requirements > Review Requirements > Manage Requirements

b)

Document Requirements > Manage Requirements > Develop Requirements > Review Requirements

c)

Manage Requirements > Document Requirements > Review Requirements > Develop Requirements

d)

Develop Requirements > Review Requirements > Document Requirements > Manage Requirements

4.

Select 3 (three) types of testing that MUST be conducted and signed off

a)

System Test

b)

Manual Test

c)

System Integration Test (SIT)

d)

User Acceptance Test (UAT)

5.

Data Centre Operations consist of (select all that is applicable)

a)

Batch Job Run & Monitoring

b)

System Administration

c)

Patch Management

d)

Tape Management

6.

You are not allowed to bring bags or wear sandals and short pants when entering Data Centre or Server Room.


Is this statement is correct?

a)

No, its not

b)

No, you are allowed to bring bags but no sandals and short pants

c)

Absolutely Yes!

d)

Yes, but you can wear sandals when no one is there

7.

How often does the IT DR plan need to be updated?

a)

At least once a year

b)

Every 2 years

c)

3 times a year

d)

Every 5 years

8.

A ITDR test is the process of running through each step of the disaster recovery plan to ensure that it can be implemented in emergency situations and that all involved understand how it is to be executed.


Is this statement is correct?

a)

Yes

b)

No

9.

What do you need to do before you can bring your own device (BYOD) and use it for office / work purposes?


A) Obtain the necessary approvals

B) Register the device(s)

C) Get IT Security to analyze the device(s) for security risks

D) Have IT Security to configure the device(s) with mandatory applications and security settings

a)

A only

b)

A and B

c)

A, B, and D

d)

All of the above

10.

Which if the following is NOT part of Endpoint Security?

a)

All endpoints must be installed with the latest antivirus / anti-malware and Endpoint Detection and Response (EDR) software and signatures

b)

Lock your screen when you are away from your computer

c)

Update all the server's backup tape movement into Master Inventory

d)

Report immediately to the appropriate authorities and Reporting Manager if a CIMB laptop / PC is stolen or lost