List of questions
Related questions
Question 1138 - CISSP discussion
An organization's internal audit team performed a security audit on the company's system and reported that the manufacturing application is rarely updated along with other issues categorized as minor. Six months later, an external audit team reviewed the same system with the same scope, but identified severe weaknesses in the manufacturing application's security controls. What is MOST likely to be the root cause of the internal audit team's failure in detecting these security issues?
A.
Inadequate test coverage analysis
B.
Inadequate security patch testing
C.
Inadequate log reviews
D.
Inadequate change control procedures
Your answer:
0 comments
Sorted by
Leave a comment first