ExamGecko
Question list
Search
Search

Related questions

Question 1118 - CISA discussion

Report
Export

Following the sale of a business division, employees will be transferred to a new organization, but they will retain access to IT equipment from the previous employer. An IS auditor has recommended that both organizations agree to and document an acceptable use policy for the equipment. What type of control has been recommended?

A.
Detective control
Answers
A.
Detective control
B.
Preventive control
Answers
B.
Preventive control
C.
Directive control
Answers
C.
Directive control
D.
Corrective control
Answers
D.
Corrective control
Suggested answer: B

Explanation:

An acceptable use policy (AUP) is a preventive control that sets out rules and guidelines for using an organization's IT resources, including networks, devices, and software1.It defines acceptable and prohibited behaviors, aiming to protect assets, ensure security, and maintain a productive work environment1.By agreeing to and documenting an AUP for the equipment, both organizations can prevent potential misuse of IT resources2345.

ISO 27001 Acceptable Use Policy Beginner's Guide - High Table

Acceptable Use Policy for Information Technology Resources

Acceptable Use Policies for Workplace Technology | Verizon

IT Governance: Your Must-Have Policies - How-To Geek

Acceptable use policy template - Workable

asked 18/09/2024
Marcelo Oliveira
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first