ExamGecko
Question list
Search
Search

Related questions

Question 1028 - CISA discussion

Report
Export

Which type of review is MOST important to conduct when an IS auditor is informed that a recent internal exploitation of a bug has been discovered in a business application?

A.
Penetration testing
Answers
A.
Penetration testing
B.
Application security testing
Answers
B.
Application security testing
C.
Forensic audit
Answers
C.
Forensic audit
D.
Server security audit
Answers
D.
Server security audit
Suggested answer: C

Explanation:

The type of review that is most important to conduct when an IS auditor is informed that a recent internal exploitation of a bug has been discovered in a business application is C. Forensic audit.A forensic audit is a type of audit that involves collecting, analyzing, and preserving evidence of fraud, corruption, or other illegal or unethical activities1. A forensic audit can help the IS auditor to identify and document the source, scope, and impact of the exploitation, as well as the perpetrators, motives, and methods involved.A forensic audit can also help the IS auditor to provide recommendations for preventing or mitigating future exploitations, and to support any legal actions or investigations that may arise from the incident2.

asked 18/09/2024
Anthony Steele
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first