Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 677 discussion

Actual exam question from Isaca's CISM
Question #: 677
Topic #: 1
[All CISM Questions]

Which of the following change management procedures is MOST likely to cause concern to the information security manager?

  • A. Users are not notified of scheduled system changes.
  • B. Fallback processes are tested the weekend before changes are made.
  • C. The development manager migrates programs into production.
  • D. A manual rather than an automated process is used to compare program versions.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
aokisan
Highly Voted 1 year, 11 months ago
Selected Answer: C
develop manager should not involve to operational environment.
upvoted 7 times
...
Broesweelies
Highly Voted 1 year, 9 months ago
Selected Answer: C
C it is.
upvoted 5 times
...
Booict
Most Recent 2 months, 4 weeks ago
Selected Answer: C
C - skip necessary checks can increase the risk of introducing vulnerabilities or unauthorized changes into the production environment.
upvoted 1 times
...
afc1019
1 year ago
Selected Answer: A
Users are not notified of scheduled system changes is the change management procedure that is MOST likely to cause concern to the information security manager. When users are not notified of scheduled system changes, they may be caught off guard by the changes and may not be able to prepare for them. This can lead to disruption to business operations and can also increase the risk of security incidents. The development manager migrates programs into production: This is a normal part of the change management process. The development manager is responsible for developing and testing new programs and for migrating them into production once they have been tested and approved.
upvoted 2 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: C
Option C
upvoted 1 times
...
richck102
1 year, 4 months ago
C. The development manager migrates programs into production.
upvoted 1 times
...
Saisharan
1 year, 5 months ago
In an effective change management process, there should be a clear separation of duties and responsibilities between development and production environments. Allowing the development manager to directly migrate programs into production can bypass necessary security controls, increase the risk of unauthorized changes, and potentially compromise the integrity and availability of the production environment. Hence Option C
upvoted 2 times
...
Souvik124
1 year, 9 months ago
A. Users are not notified of scheduled system changes.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...