CISA Type question 08-1308 on Anti-virus
An IS auditor while auditing has suggested a control measure suggesting keeping virus definition file up to date. The IS auditor has suggested the same PRIMARILY to
1. reduce the chances of false negative
2. reduce the chances of false positive
3. For increasing profit of the firm
4. None of the above.
Answer to CISA Type Question 08-0708 on audit of firewall
This is the type of ports and related services which are important for firewall
implementation. Number of ports and services are not very important parameter in
most of the cases in firewall implementation. Where as Firewall rule sets &
Firewall Log generation and log auditing are very important in firewall
implementation and management. so the correct answer is 3. Number of ports and
services permitted and allowed.
For further details refer to 10 Things to consider when auditing a firewall
0 comments:
Post a Comment