ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 179 - CS0-003 discussion

Report
Export

A small company does no! have enough staff to effectively segregate duties to prevent error and fraud in payroll management. The Chief Information Security Officer (CISO) decides to maintain and review logs and audit trails to mitigate risk. Which of the following did the CISO implement?

A.
Corrective controls
Answers
A.
Corrective controls
B.
Compensating controls
Answers
B.
Compensating controls
C.
Operational controls
Answers
C.
Operational controls
D.
Administrative controls
Answers
D.
Administrative controls
Suggested answer: B

Explanation:

Compensating controls are alternative controls that provide a similar level of protection as the original controls, but are used when the original controls are not feasible or cost-effective. In this case, the CISO implemented compensating controls by reviewing logs and audit trails to mitigate the risk of error and fraud in payroll management, since segregating duties was not possible due to the small staff size

asked 02/10/2024
Bamidele Ariwodola
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first