List of questions
Related questions
Question 1174 - CISA discussion
During an IS audit of a data center, it was found that programmers are allowed to make emergency fixes to operational programs. Which of the following should be the IS auditor's PRIMARY recommendation?
A.
Programmers should be allowed to implement emergency fixes only after obtaining verbal agreement from the application owner.
B.
Emergency program changes should be subject to program migration and testing procedures before they are applied to operational systems.
C.
Bypass user ID procedures should be put in place to ensure that the changes are subject to after-the-event approval and testing.
Your answer:
0 comments
Sorted by
Leave a comment first