1/8
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced |
|---|
No study sessions yet.
Who created the COBIT framework?
Information Systems Audit and Control Association (ISACA)
Explain the COBIT framework.
Focuses on IT controls
IT general controls that electronic information is complete and accurate
Accounting and IT work together
Why do we need the COBIT framework in addition to the ERM and IC frameworks?
Because the COSO frameworks do not specifically address IT controls.
What is the difference between Financial and Operational IT controls?
the control actions are the same but the involved systems are different.
Explain the difference between IT Controls and Business Process Controls.
IT Controls - intended to protect ALL cycles
BP Controls - Intended to address the risks of a specific business process cycle.
Explain the common user access structure in AIS.
Tasks - the individual functions a user can do in an AIS
Roles - a grouping of tasks to save time in granting access… assign a role to a user instead of 100s of tasks
User ID - used to grant access to tasks via its assigned roles
What are the 3 types of authentication methods?
something the user knows (passwords)
something the user has (random PIN like DUO)
something apart of the user (biometrics)
What is multifactor authentication?
when more than one user authentication type is used.
Explain Encryption.
“Keys” that are required to open digital files so that they are readable.