CISA Made Easy

                                           - easy CISA preparation

Thursday, August 7, 2008

CISA Type Question 08-0708 on audit of firewall

Which of the following is the LEAST important for an IS auditor auditing a Firewall implementation?

  1. Types of services permitted and disallowed
  2. Firewall rule sets
  3. Number of ports and services permitted and allowed
  4. Firewall Log generation and log auditing

Answer to CISA Type Question 08-0608

Correct answer is 3. The auditor should discuss summary of critical findings and other highlights.

For discussion IS Auditor should make a summary of critical report an other important highlight. All other findings should be documented and presented.

Readers who visited this post also read :

0 comments:

 

Home | | | | |

CISA made Easy - Easy CISA Preparation