CISA Made Easy

                                           - easy CISA preparation

Wednesday, August 13, 2008

CISA Type question 08-1308 on Anti-virus


An IS auditor while auditing has suggested a control measure suggesting keeping virus definition file up to date. The IS auditor has suggested the same PRIMARILY to



1. reduce the chances of false negative

2. reduce the chances of false positive

3. For increasing profit of the firm

4. None of the above.





Answer to CISA Type Question 08-0708 on audit of firewall



This is the type of ports and related services which are important for firewall
implementation. Number of ports and services are not very important parameter in
most of the cases in firewall implementation. Where as Firewall rule sets &
Firewall Log generation and log auditing are very important in firewall
implementation and management. so the correct answer is 3. Number of ports and
services permitted and allowed.



For further details refer to 10 Things to consider when auditing a firewall

Readers who visited this post also read :

0 comments:

 

Home | | | | |

CISA made Easy - Easy CISA Preparation