ExamGecko
Question list
Search
Search

Related questions











Question 571 - CISA discussion

Report
Export

An organization is shifting to a remote workforce In preparation the IT department is performing stress and capacity testing of remote access infrastructure and systems What type of control is being implemented?

A.
Directive
Answers
A.
Directive
B.
Detective
Answers
B.
Detective
C.
Preventive
Answers
C.
Preventive
D.
Compensating
Answers
D.
Compensating
Suggested answer: A

Explanation:

An organization is shifting to a remote workforce. In preparation, the IT department is performing stress and capacity testing of remote access infrastructure and systems. This type of control is being implemented to direct or guide actions to achieve a desired outcome. Therefore, it is a directive control. Directive controls are proactive controls that seek to prevent undesirable events from occurring. They include policies, standards, procedures, guidelines, training, and testing. Detective controls are reactive controls that seek to identify undesirable events that have already occurred. They include monitoring, logging, auditing, and reporting. Preventive controls are proactive controls that seek to avoid undesirable events from occurring. They include authentication, encryption, firewalls, and antivirus software. Compensating controls are alternative controls that provide a similar level of protection as the primary controls when the primary controls are not feasible or cost-effective. They include segregation of duties, manual reviews, and backup systems.Reference:CISA Review Manual (Digital Version), [ISACA Glossary of Terms]

asked 18/09/2024
Rumen Zazyov
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first