CMA Final · Cost and Management Audit · Information Systems Security Audit
Which of the following is an example of a logical access control, as distinct from a physical access control?
Role-based permissions limiting who may edit the standard cost master are a logical access control, because they restrict access to data and programs through software. Biometric door locks, CCTV and fire suppression are physical or environmental controls protecting premises and equipment.
- ABiometric lock on the data centre door
- BCCTV monitoring of the server room
- CRole-based permissions restricting who can edit the standard cost masterCorrect
- DFire suppression system in the computer room
Explanation
Logical access controls are software-based restrictions on who can use systems, programs and data; role-based permissions are an example. Biometric door locks, CCTV and fire suppression protect the physical premises and equipment.
Did you get it right without looking?
One question tells you little. A timed set on Information Systems Security Audit shows your real accuracy, how long you take and where you lose marks.
More Information Systems Security Audit questions
- During an audit of a firm's ERP, the auditor wants to test whether application controls correctly reject invalid data, using the company's l…
- Which of the following best describes the purpose of a 'segregation of duties' control in a computerised cost accounting environment?
- Which audit technique involves the auditor processing test transactions with known expected results through the client's live application to…
- An auditor reviewing a company's disaster recovery plan finds that backups are taken daily but have never been restored in a test. Which con…
- A firm's disaster recovery plan states that after an outage, systems must be running within 4 hours, and that no more than 30 minutes of tra…
- An auditor finds that a cost accounting application's database administrator can also approve journal entries and delete audit log records. …