CS Professional · Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice · Information Systems
In an information system, which control is classified as a preventive control?
Requiring a unique user ID and password before accessing the payroll module is a preventive control because it stops unauthorised access before it happens. Log reviews and exception reports detect problems afterwards, and restoring backups corrects damage after an incident.
- AReviewing system logs after a month-end close
- BRequiring a unique user ID and password before access to the payroll moduleCorrect
- CRestoring data from backup after a server crash
- DInvestigating an unexplained transaction flagged by an exception report
Explanation
Preventive controls stop an unwanted event before it occurs. Authentication at login blocks unauthorised access. Log review and exception reports are detective controls, while restoring from backup is a corrective control.
Did you get it right without looking?
One question tells you little. A timed set on Information Systems shows your real accuracy, how long you take and where you lose marks.
More Information Systems questions
- A bank's transaction system transfers Rs 10,000 from account A to account B. The debit succeeds but the system crashes before the credit, an…
- A company secretary reviews a customer table in which each customer has a unique customer ID, and an orders table that stores the customer I…
- Which statement correctly distinguishes data from information in an information system?
- Sharma Traders' manager uses a system that summarises monthly sales by region in periodic reports to monitor performance and take routine co…
- Nila Ltd. relies on its information system for customer records. An employee deliberately alters stored customer data without permission, us…
- During the testing phase of a new inventory system, the vendor's team runs the software in a controlled environment, and then selected end-u…