CHAPTER 2: AUDITING IT GOVERNANCE CONTROLS P1
問題一覧
1
Information Technology (IT) Governance
2
1. reduce risk 2. ensure that investments in IT resources add value to the corporation
3
1. Organizational structure of the IT function 2. Computer center operations 3. Disaster recovery planning
4
1. centralized approach 2. distributed approach
5
centralized data processing model
6
IT services
7
1. database administration 2. data processing 3. systems development and maintainance
8
data administration
9
database administrator (DBA)
10
data processing group
11
1. data conversion 2. computer operation 3. data library
12
data conversion
13
computer operations
14
data library
15
data library
16
data librarian
17
1. system development 2. systems maintenance
18
system development
19
1. systems professional 2. end users 3. stakeholders
20
systems professionals
21
systems professionals
22
end users
23
stakeholders
24
maintenance
25
1. separate transaction authorization from transaction processing 2. separate record keeping from asset custod 3. divide transaction-processing tasks among individuals.
26
DBA function
27
1. systems analysis 2. programming
28
systems analysis
29
programming group
30
1. inadequate documentation 2. program fraud
31
inadeqate documentation
32
job security
33
program fraud
34
program fraud
35
1. new systems development 2. systems maintenance
36
new systems development
37
systems maintenance group
38
1. First, documentation standards are improved 2. Second, denying the original programmer future access to the program deters pro- gram fraud.
39
distributed data processing (DDP)
40
1. end-user computing 2. commercial software 3. networking 4. office automation
41
1. business function 2. geographic location
42
1. inefficient use of resources 2. destruction of audit trails 3. inadequate segregation of duties 4. increased potential for programming errors and systems failure 5. lack of standards
43
1. risk of mismanagement of organization-wide IT resources by end users. 2. redundant tasks being performed within the end-user committee. 3. risk of incompatible hardware and software among end-user functions.
44
1. cost reduction 2. improved cost control 3. improved user satisfaction 4. backup
45
1. central testing of commercial software and hardware 2. user services 3. standard-setting body 4. personnel review
46
1. physical location 2. construction 3. access 4. air conditioning 5. fire suppression 6. fault tolerance
47
1. Redundant arrays of independent disks (RAID) 2. uninterruptable power supplies
48
1. test of physical construction 2. test of the fire detection system 3. test of access control 4. test of raid 5. test of the uninterruptible power supply 6. test for insurance coverage
49
1. natural 2. human-made 3. system failure
50
fire flood tornado
51
sabotage error
52
power outages drive failure crash/lock
53
Disaster Recovery Plan
54
1. identify critical applications 2. create disaster recovery team 3. provide site backup 4. specify backup and offsite storage procedures
55
1. mutual aid pact 2. empty shell 3. recovery operations center 4. internally provided backup
56
1. operating system backup 2. application backup 3. backup data files 4. backup documentation 5. backup supplies and source documents 6. testing the DRP
57
1. site backup 2. critical application list 3. software backup 4. data backup 5. backup supplies, document, and documentation 6. disaster recovery team
HBO
HBO
Charles Jaojao · 26問 · 1年前HBO
HBO
26問 • 1年前government accounting
government accounting
Charles Jaojao · 100問 · 1年前government accounting
government accounting
100問 • 1年前government accounting part 2
government accounting part 2
Charles Jaojao · 68問 · 1年前government accounting part 2
government accounting part 2
68問 • 1年前government accounting part 3
government accounting part 3
Charles Jaojao · 39問 · 1年前government accounting part 3
government accounting part 3
39問 • 1年前hbo
hbo
Charles Jaojao · 69問 · 1年前hbo
hbo
69問 • 1年前statistics
statistics
Charles Jaojao · 20問 · 1年前statistics
statistics
20問 • 1年前management
management
Charles Jaojao · 52問 · 1年前management
management
52問 • 1年前management 2
management 2
Charles Jaojao · 100問 · 1年前management 2
management 2
100問 • 1年前management 3
management 3
Charles Jaojao · 13問 · 1年前management 3
management 3
13問 • 1年前theology
theology
Charles Jaojao · 100問 · 1年前theology
theology
100問 • 1年前theology 2
theology 2
Charles Jaojao · 11問 · 1年前theology 2
theology 2
11問 • 1年前government accounting
government accounting
Charles Jaojao · 44問 · 1年前government accounting
government accounting
44問 • 1年前fundamentals
fundamentals
Charles Jaojao · 27問 · 1年前fundamentals
fundamentals
27問 • 1年前motivation
motivation
Charles Jaojao · 31問 · 1年前motivation
motivation
31問 • 1年前communication
communication
Charles Jaojao · 48問 · 1年前communication
communication
48問 • 1年前partnership
partnership
Charles Jaojao · 22問 · 1年前partnership
partnership
22問 • 1年前Financial Ratios
Financial Ratios
Charles Jaojao · 18問 · 1年前Financial Ratios
Financial Ratios
18問 • 1年前premidterm examination
premidterm examination
Charles Jaojao · 46問 · 1年前premidterm examination
premidterm examination
46問 • 1年前Pre-midterm examination part 1
Pre-midterm examination part 1
Charles Jaojao · 25問 · 1年前Pre-midterm examination part 1
Pre-midterm examination part 1
25問 • 1年前CHAPTER 1: AUDITING AND INTERNAL CONTROL P1
CHAPTER 1: AUDITING AND INTERNAL CONTROL P1
Charles Jaojao · 100問 · 1年前CHAPTER 1: AUDITING AND INTERNAL CONTROL P1
CHAPTER 1: AUDITING AND INTERNAL CONTROL P1
100問 • 1年前CHAPTER 1: AUDITING AND INTERNAL CONTROL P2
CHAPTER 1: AUDITING AND INTERNAL CONTROL P2
Charles Jaojao · 36問 · 1年前CHAPTER 1: AUDITING AND INTERNAL CONTROL P2
CHAPTER 1: AUDITING AND INTERNAL CONTROL P2
36問 • 1年前CHAPTER 1
CHAPTER 1
Charles Jaojao · 100問 · 1年前CHAPTER 1
CHAPTER 1
100問 • 1年前CHAPTER 1 P2
CHAPTER 1 P2
Charles Jaojao · 22問 · 1年前CHAPTER 1 P2
CHAPTER 1 P2
22問 • 1年前問題一覧
1
Information Technology (IT) Governance
2
1. reduce risk 2. ensure that investments in IT resources add value to the corporation
3
1. Organizational structure of the IT function 2. Computer center operations 3. Disaster recovery planning
4
1. centralized approach 2. distributed approach
5
centralized data processing model
6
IT services
7
1. database administration 2. data processing 3. systems development and maintainance
8
data administration
9
database administrator (DBA)
10
data processing group
11
1. data conversion 2. computer operation 3. data library
12
data conversion
13
computer operations
14
data library
15
data library
16
data librarian
17
1. system development 2. systems maintenance
18
system development
19
1. systems professional 2. end users 3. stakeholders
20
systems professionals
21
systems professionals
22
end users
23
stakeholders
24
maintenance
25
1. separate transaction authorization from transaction processing 2. separate record keeping from asset custod 3. divide transaction-processing tasks among individuals.
26
DBA function
27
1. systems analysis 2. programming
28
systems analysis
29
programming group
30
1. inadequate documentation 2. program fraud
31
inadeqate documentation
32
job security
33
program fraud
34
program fraud
35
1. new systems development 2. systems maintenance
36
new systems development
37
systems maintenance group
38
1. First, documentation standards are improved 2. Second, denying the original programmer future access to the program deters pro- gram fraud.
39
distributed data processing (DDP)
40
1. end-user computing 2. commercial software 3. networking 4. office automation
41
1. business function 2. geographic location
42
1. inefficient use of resources 2. destruction of audit trails 3. inadequate segregation of duties 4. increased potential for programming errors and systems failure 5. lack of standards
43
1. risk of mismanagement of organization-wide IT resources by end users. 2. redundant tasks being performed within the end-user committee. 3. risk of incompatible hardware and software among end-user functions.
44
1. cost reduction 2. improved cost control 3. improved user satisfaction 4. backup
45
1. central testing of commercial software and hardware 2. user services 3. standard-setting body 4. personnel review
46
1. physical location 2. construction 3. access 4. air conditioning 5. fire suppression 6. fault tolerance
47
1. Redundant arrays of independent disks (RAID) 2. uninterruptable power supplies
48
1. test of physical construction 2. test of the fire detection system 3. test of access control 4. test of raid 5. test of the uninterruptible power supply 6. test for insurance coverage
49
1. natural 2. human-made 3. system failure
50
fire flood tornado
51
sabotage error
52
power outages drive failure crash/lock
53
Disaster Recovery Plan
54
1. identify critical applications 2. create disaster recovery team 3. provide site backup 4. specify backup and offsite storage procedures
55
1. mutual aid pact 2. empty shell 3. recovery operations center 4. internally provided backup
56
1. operating system backup 2. application backup 3. backup data files 4. backup documentation 5. backup supplies and source documents 6. testing the DRP
57
1. site backup 2. critical application list 3. software backup 4. data backup 5. backup supplies, document, and documentation 6. disaster recovery team