Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Isaca Certified Information Systems Auditor CISA Question # 264 Topic 27 Discussion

Isaca Certified Information Systems Auditor CISA Question # 264 Topic 27 Discussion

CISA Exam Topic 27 Question 264 Discussion:
Question #: 264
Topic #: 27

A small IT department has embraced DevOps, which allows members of this group to deploy code to production and maintain some development access to automate releases. Which of the following is the MOST effective control?


A.

Enforce approval prior to deployment by a member of the team who has not taken part in the development.


B.

The DevOps team provides an annual policy acknowledgment that they did not develop and deploy the same code.


C.

Annual training reinforces the need to maintain segregation between developers and deployers of code


D.

The IT compliance manager performs weekly reviews to ensure the same person did not develop and deploy code.


Get Premium CISA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.