CISA Type Question 08-0708 on audit of firewall
Which of the following is the LEAST important for an IS auditor auditing a Firewall implementation?
- Types of services permitted and disallowed
- Firewall rule sets
- Number of ports and services permitted and allowed
- Firewall Log generation and log auditing
Answer to CISA Type Question 08-0608
Correct answer is 3. The auditor should discuss summary of critical findings and other highlights.
For discussion IS Auditor should make a summary of critical report an other important highlight. All other findings should be documented and presented.
0 comments:
Post a Comment