exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 620 discussion

Actual exam question from Isaca's CISA
Question #: 620
Topic #: 1
[All CISA Questions]

An IS auditor is reviewing logical access controls for an organization's financial business application. Which of the following findings should be of GREATEST concern to the auditor?

  • A. Management does not review application user activity logs.
  • B. Password length is set to eight characters.
  • C. User accounts are shared between users.
  • D. Users are not required to change their passwords on a regular basis.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
FAGFUR
3 months, 3 weeks ago
Selected Answer: C
Sharing user accounts between users is a serious security concern. It undermines the principle of individual accountability and makes it difficult to trace actions back to specific individuals. This practice poses a significant risk to the integrity and confidentiality of the financial business application data, as it becomes challenging to determine who performed specific actions or accessed certain information. It also increases the likelihood of unauthorized access and misuse of the system.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago