ExamGecko
Question list
Search
Search

Related questions











Question 712 - CISA discussion

Report
Export

During a physical security audit, an IS auditor was provided a proximity badge that granted access to three specific floors in a corporate office building. Which of the following issues should be of MOST concern?

A.
The proximity badge did not work for the first two days of audit fieldwork.
Answers
A.
The proximity badge did not work for the first two days of audit fieldwork.
B.
There was no requirement for an escort during fieldwork.
Answers
B.
There was no requirement for an escort during fieldwork.
C.
There was no follow-up for unsuccessful attempted access violations.
Answers
C.
There was no follow-up for unsuccessful attempted access violations.
D.
The proximity badge incorrectly granted access to restricted areas.
Answers
D.
The proximity badge incorrectly granted access to restricted areas.
Suggested answer: D

Explanation:

The proximity badge incorrectly granting access to restricted areas is the most concerning issue, as it indicates a failure of the access control system to enforce the principle of least privilege and protect the sensitive or critical assets of the organization. The proximity badge should only grant access to the areas that are necessary for the IS auditor to perform the audit fieldwork, and not to any other areas that may contain confidential information, valuable equipment, or hazardous materials. The incorrect access could result in unauthorized disclosure, modification, or destruction of the assets, as well as potential safety or legal issues.

Reference

ISACA CISA Review Manual, 27th Edition, page 254

Office & Workplace Physical Security Assessment Checklist

Physical Security: Planning, Measures & Examples

asked 18/09/2024
Juan Garrido Soler
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first