Multiple Choice
An audit is an important part of any control system. Which of the following is not a question that would typically be asked as part of an information systems audit?
A) Are there sufficient controls in the system? Which areas are not covered by controls?
B) Are the controls implemented properly? Are the controls effective?
C) What is the cost of the controls? What is the ROI return on investment) associated with system controls?
D) Are there procedures to ensure reporting and corrective actions in case of violations of controls?
Correct Answer:

Verified
Correct Answer:
Verified
Q63: To keep unauthorized users out of the
Q64: Which of the following is not a
Q65: Viruses, worms, Trojan horses, spyware, and any
Q66: Most data breaches go unreported, according to
Q67: The cybersecurity defense strategy and controls that
Q69: Which of the following factors was not
Q70: In Cybersecurity terminology, a risk is defined
Q71: The three key principles of cybersecurity are
Q72: Individual computers infected by software "robots" are
Q73: When new vulnerabilities are found in operating