ExamGecko
Question list
Search
Search

Related questions











Question 380 - CISA discussion

Report
Export

in a controlled application development environment, the MOST important segregation of duties should be between the person who implements changes into the production environment and the:

A.
application programmer
Answers
A.
application programmer
B.
systems programmer
Answers
B.
systems programmer
C.
computer operator
Answers
C.
computer operator
D.
quality assurance (QA) personnel
Answers
D.
quality assurance (QA) personnel
Suggested answer: A

Explanation:

In a controlled application development environment, the most important segregation of duties should be between the person who implements changes into the production environment and the application programmer. This segregation of duties ensures that no one person can create and deploy code without proper review, testing, and approval. This reduces the risk of errors, fraud, or malicious code being introduced into the production environment.

The other options are not as important as the segregation between the application programmer and the person who implements changes into production, but they are still relevant for achieving a secure and reliable application development environment. The segregation of duties between the person who implements changes into production and the systems programmer is important to prevent unauthorized or untested changes to system software or configuration. The segregation of duties between the person who implements changes into production and the computer operator is important to prevent unauthorized or uncontrolled access to production data or resources. The segregation of duties between the person who implements changes into production and the quality assurance (QA) personnel is important to ensure independent verification and validation of code quality and functionality.

ISACA CISA Review Manual 27th Edition (2019), page 247

Segregation of Duties in an Agile Environment | AKF Partners3

Separation of Duties: How to Conform in a DevOps World4

asked 18/09/2024
Navaid Ali
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first