ExamGecko
Question list
Search
Search

Related questions

Question 361 - CISA discussion

Report
Export

Which of the following should be the IS auditor's PRIMARY focus, when evaluating an organization's offsite storage facility?

A.
Shared facilities
Answers
A.
Shared facilities
B.
Adequacy of physical and environmental controls
Answers
B.
Adequacy of physical and environmental controls
C.
Results of business continuity plan (BCP) test
Answers
C.
Results of business continuity plan (BCP) test
D.
Retention policy and period
Answers
D.
Retention policy and period
Suggested answer: B

Explanation:

The IS auditor's primary focus when evaluating an organization's offsite storage facility should be the adequacy of physical and environmental controls. Physical and environmental controls are essential to protect the offsite storage facility from unauthorized access, theft, fire, water damage, pests or other hazards that could compromise the integrity and availability of backup media. Shared facilities is something that the IS auditor should consider when evaluating the offsite storage facility, but it is not the primary focus. Results of business continuity plan (BCP) test or retention policy and period are things that the IS auditor should review when evaluating the organization's BCP or backup strategy, not the offsite storage facility itself.Reference:ISACA, CISA Review Manual, 27th Edition, 2018, page 388

asked 18/09/2024
Kathie Herod
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first