XML Feeds

Search Big4Guy

Custom Search

Sponsored

« Management Assessment of Internal Controls - Section 404 Sarbanes OxleySAP Interview Question - PGI Post Goods Issue »

Certified Information Systems Auditor Exam - SDLC Systems Development Lifecycle Question

Certified Information Systems Auditor Exam - SDLC Systems Development Lifecycle Question

Here is a simple Question adapted from the CISA exam.

Q). In a Systems Development Lifecycle, information security controls should be

Options:

A. Designed during the implementation phase
B. Implemented Prior to Validation
C. Should be taken up as part of the feasibility stage
D. Specified after the coding phase

Answer: As a best practice controls should be taken up in the feasibility stage of the SDLC. The earlier the controls are introduced in the SDLC, the cheaper they are and the easier it is to ensure better controls.


Permalink 12/20/05 10:54:07 pm , by big4guy Email , 463 views, CISA Exam, 1 comment »

1 comment

Comment from: jagatheesa naidoo [Visitor]
When will your site feature articles
and Questions on the New 2006 CISA Content Areas.

Thanks !

miki
03/24/06 @ 09:19

This post has 5 feedbacks awaiting moderation...

Leave a comment


Your email address will not be revealed on this site.

Your URL will be displayed.
(Line breaks become <br />)
(Name, email & website)
(Allow users to contact you through a message form (your email will not be revealed.)