Isaca Certified Information Systems Auditor CISA Question # 348 Topic 35 Discussion

Isaca Certified Information Systems Auditor CISA Question # 348 Topic 35 Discussion

CISA Exam Topic 35 Question 348 Discussion:
Question #: 348
Topic #: 35

During a database management evaluation an IS auditor discovers that some accounts with database administrator (DBA) privileges have been assigned a default password with an unlimited number of failed login attempts Which of the following is the auditor's BEST course of action?


A.

Identify accounts that have had excessive failed login attempts and request they be disabled


B.

Request the IT manager to change administrator security parameters and update the finding


C.

Document the finding and explain the risk of having administrator accounts with inappropriate security settings


Get Premium CISA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.