ExamGecko
Question list
Search
Search

Related questions











Question 563 - CISA discussion

Report
Export

A programmer has made unauthorized changes lo key fields in a payroll system report. Which of the following control weaknesses would have contributed MOST to this problem?

A.
The programmer did not involve the user in testing
Answers
A.
The programmer did not involve the user in testing
B.
The user requirements were not documented
Answers
B.
The user requirements were not documented
C.
The programmer has access to the production programs
Answers
C.
The programmer has access to the production programs
D.
Payroll files were not under the control of a librarian
Answers
D.
Payroll files were not under the control of a librarian
Suggested answer: C

Explanation:

The programmer having access to the production programs is a control weakness that would have contributed most to the problem of unauthorized changes to key fields in a payroll system report. This is because it violates the principle of segregation of duties, which requires that different individuals or groups perform different functions related to system development, testing, implementation, and operation. Allowing programmers to access production programs increases the risk of errors, fraud, or malicious actions that may compromise the integrity, availability, or confidentiality of the system or its data.The other options are not as significant as having access to production programs, as they relate to other aspects of system development or maintenance, such as user involvement in testing (which affects user satisfaction and acceptance), user requirements documentation (which affects system functionality and quality), and payroll files control (which affects data security and accuracy).Reference:CISA Review Manual (Digital Version), Domain 3: Information Systems Acquisition, Development and Implementation, Section 3.2 Project Management Practices

asked 18/09/2024
Andifon Etim
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first