100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
Test 3- Ch 14, 15, 16 £6.27   Add to cart

Exam (elaborations)

Test 3- Ch 14, 15, 16

 0 view  0 purchase

Test 3- Ch 14, 15, 16

Preview 3 out of 26  pages

  • June 25, 2024
  • 26
  • 2023/2024
  • Exam (elaborations)
  • Questions & answers
All documents for this subject (77)
avatar-seller
lydiaomutho
Test 3- Ch 14, 15, 16
________ are the biggest weakness in a company's internal control environment.
A. Humans
B. Networks

✅✅
C. Routers
D. Systems - -A. Humans

A business can protect itself from DoS and DDoS attacks by ensuring that
________, routers, and intrusion detection systems are up-to-date, are properly
configured, and will automatically block the ports where fake requests enter the
system.
A. Servers
B. ecommerce sites

✅✅
C. Firewalls
D. Websites - -C. Firewalls

A business can protect itself from DoS and DDoS attacks by ensuring that
firewalls, routers, and ________ are up-to-date, are properly configured, and will
automatically block the ports where fake requests enter the system.
A. Servers
B. Websites

✅✅
C. ecommerce sites
D. intrusion detection systems - -D. intrusion detection systems

A business with cash transactions may choose not to record the cash sales to
understate revenue. Why would a business want to understate revenue?
A. To decrease inflate stock prices
B. To decrease tax liabilities

✅✅
C. To meet the terms of loan covenants
D. To hide problems - -B. To decrease tax liabilities

A company's best defense against phishing attacks is to train employees to
recognize and report red flags. The correct definition of a poor grammar or
spelling red flag is
A. Sending from obscure domains that are designed to look similar to legitimate
domains

,B. Addressing the email to a generic recipient
C. Including grammar or spelling mistakes

✅✅
D. Using words like "suspended", "security concerns," and "immediately" -
-C. Including grammar or spelling mistakes

A formal change management process includes multiple environments to reduce
risk. A formal change must go through the environments in what order?
A. Test, Model, then Production
B. Production, Model, then Test

✅✅
C. Model, Test, then Production
D. Production, Test, then Model - -A. Test, Model, then Production

A user access review is an important yet tedious and time-consuming process.
What kind of newer technology can be implemented to automate or
semi-automate the process?
A. Dormancy software tools
B. Analytical automation

✅✅
C. User access software
D. Machine learning algorithm - -D. Machine learning algorithm

ABC Technology Management, InC. is seeking guidance on managing risk,
security, budgets, and innovation. Which COBIT 2019 management IT objective
should ABC consult?
A. Align, Plan and Organize (APO)
B. Build, Acquire and Implement (BAI)

✅✅
C. Deliver, Service and Support (DSS)
D. Monitor, Evaluate and Assess (MEA) - -A. Align, Plan and Organize
(APO)

According to the ACFE's 2020 report, which type of fraud is the least common yet
most costly of frauds?
A. Asset misappropriation
B. Corruption

✅✅
C. Financial statement fraud
D. All of these answer choices are correct. - -C. Financial statement fraud

, Adrian evaluated Branch Technologies user access assignment procedures and
found them to be inefficient. Rather than assign each user permissions
individually, Adrian recommends that Branch Technologies define roles with
pre-defined access criteria and assign users to roles. What type of authorization
is Adrian recommending?
A. Physical access controls
B. Individual permissions

✅✅
C. User access de-provisioning
D. Role-based access controls - -D. Role-based access controls

Ajla suggested to her company that they should consider financial statement
analysis to identify potential fraud by comparing changes in items between
different financial periods. What kind of analysis is Ajla suggesting?
A. Vertical
B. Horizontal

✅✅
C. Behavioral
D. Non-behavioral - -B. Horizontal

An attacker force access to the network by attempting many passwords or
phrases until finding the correct one. What type of attack is being described?
A. Brute-force attack
B. On-path attack

✅✅
C. Tailgating
D. IP spoofing - -A. Brute-force attack

At larger companies, the cybersecurity program is usually the responsibility of a
dedicated executive leader. This could include the
A. Chief Information Officer.
B. Chief Executive Officer.

✅✅
C. Chief Marketing Officer.
D. Chief Operating Officer. - -A. Chief Information Officer.

Belinda misses work often for doctor's appointments for her son. The treatments
for her son are very expensive and are only partially covered by health
insurance. While empathic of Belinda's situation, Elina knows that this is a typical
A. financial difficulty red flag.
B. unscrupulous attitude red flag.

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller lydiaomutho. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for £6.27. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

79789 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy revision notes and other study material for 14 years now

Start selling
£6.27
  • (0)
  Add to cart