Short Answer
The ________ audit process should be conducted on new IT systems and services once they are implanted; and on existing systems periodically, often as part of a wider, general audit of the organization or whenever changes are made to the organization's security policy.
Correct Answer:

Verified
Correct Answer:
Verified
Q1: Periodically reviewing controls to verify that they
Q2: Controls can be classified as belonging to
Q3: Operational controls range from simple to complex
Q4: Controls may vary in size and complexity
Q5: _ is a formal process to ensure
Q7: _ checking is an audit process to
Q8: The objective of the _ control category
Q9: Identification and authentication is part of the
Q10: When the implementation is successfully completed, _
Q11: A _ on an organization's IT systems