4月19日汇哲CISA培训习题
cisa吧
全部回复
仅看楼主
level 1
信息安全政策的发展最终是_____责任:
A、信息部门
B、安全委员会
C、安全管理者
D、董事会
When planning an audit of a network setup, an IS auditor should give highest priority to obtaining which of the following network documentation?
A、Wiring and schematic diagram
B、Users' lists and responsibilities
C、Application lists and their details
D、Backup and recovery procedures

2012年04月19日 02点04分 1
level 1
中文题答案:D
解释:正常情况下,信息系统安全政策的设计是管理层或董事会的职责。信息管理部门有责任执行政策,没有权利制订政策。安全委员会一样通过董事会制订的安全政策行使职责。安全管理员有责任执行、监控和加强管理部门所建立和授权的安全规章。
英文题答案:A
NOTE: The wiring and schematic diagram of the network is necessary to carry out a network audit. A network audit may not be feasible if a network wiring and schematic diagram is not available. All other documents are important but not necessary.
CISA培训 汇哲CISA培训 汇哲CISA学习资料 汇哲CISA中文学习资料
小陆,昵称是我扣
2012年04月22日 01点04分 2
1