exam questions

Exam CBAP All Questions

View all questions & answers for the CBAP exam

Exam CBAP topic 1 question 489 discussion

Actual exam question from IIBA's CBAP
Question #: 489
Topic #: 1
[All CBAP Questions]

A conservative company with rigorous risk control plans and internal audit rules has a recurrent problem with a core business application. As a result, access to this application must be restricted and controlled and maintenance must be on-site. However, the company feels that the application must have an emergency service team. The routine maintenance of this solution is provided by an external vendor and the vendor requested 24 hours remote access to quality and production data. In this context, what is the company's response to the vendor's request?

  • A. Denied, because the vendor requested it
  • B. Denied, because of the company's risk aversion
  • C. Accepted, because the company has an urgent problem to solve
  • D. Accepted, because immediate remote access will resolve any issue
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
rupakarthik
Highly Voted 2 years, 10 months ago
Ans-B. Read first 2 sentences.
upvoted 8 times
...
DoomsdayNair
Highly Voted 2 years, 11 months ago
B. Denied, because of the company's risk aversion
upvoted 7 times
...
Jules_Cmrfrd
Most Recent 2 months ago
Selected Answer: B
B. Denied, because of the company's risk aversion
upvoted 3 times
...
Sha7rour
1 year, 3 months ago
Selected Answer: B
Answer is B , question said MUST be in house
upvoted 2 times
...
OlivierPaudex
1 year, 4 months ago
24 hours remote access and production data access is far too much to resolve a problem. I will go for B, denied because of risk aversion
upvoted 1 times
...
rebelng
2 years, 2 months ago
The answer is B. Company policy cannot be changed for routine maintenance.
upvoted 3 times
...
binu801
2 years, 5 months ago
How the maintenance will be done without access. either the org should do it in house , but if it decides to outsource it has to provide all necessary data and access- so between C and D
upvoted 1 times
xiaoyangwu
3 months, 2 weeks ago
remote access and onsite access are different, onsite access means inside the LAN, but remote access need through internet.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago