exam questions

Exam IIA-CIA-Part3 All Questions

View all questions & answers for the IIA-CIA-Part3 exam

Exam IIA-CIA-Part3 topic 2 question 92 discussion

Actual exam question from IIA's IIA-CIA-Part3
Question #: 92
Topic #: 2
[All IIA-CIA-Part3 Questions]

Which of the following is most important for an internal auditor to check with regard to the database version?

  • A. Verify whether the organization uses the most recent database software version.
  • B. Verify whether the database software version is supported by the vendor.
  • C. Verify whether the database software version has been recently upgraded.
  • D. Verify whether access to database version information is appropriately restricted.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Elvin
9 months, 1 week ago
Selected Answer: B
My answer is also B. Does anyone agree? please click the like button. For an internal auditor, the most important point to consider with regard to the database version would be option b) Verify whether the database software version is supported by the vendor. While all the options seem relevant, the primary concern for an auditor should be the risk to the organization. If the database software version is not supported by the vendor, it could pose potential security risks and operational challenges. Being unsupported might mean that the software will no longer receive essential updates, including protection against new threats. Option a) is also significant as using the most recent database software version ensures better functionality and security features. However, it is not critical if the existing version is still supported and secure. Option c) and d) are less critical from an auditor's perspective as they don't directly impact the risks.
upvoted 3 times
...
KonradK
9 months, 1 week ago
Selected Answer: B
It's B! Admins please correct
upvoted 1 times
...
yomang
3 years, 4 months ago
Per Gleim, it's gotta be B. Here's why: Having the most upgraded or most recent software version is not really a concern. If you have the 2011 version of Excel (and not 2020 version) but it works for your organization, then who cares? As far as the information being restricted, that is something that probably should be looked at, but it's all moot if you haven't first verified that the software version you got is actually from the VENDOR. Per Gleim: "the first task an auditor should perform is to detect if the software version is an illegal copy". You could have gotten the "Excel" software from the internet, but you might've gotten an illegal copy that could contain a virus - or it could be a version that doesn't work good. Also, if you have issues and the software version you have is not supported by the vendor, then who the heck do you go to? So you'd first want to make sure that you actually have the version that is supported by the vendor.
upvoted 4 times
Java_Girl
3 years, 4 months ago
most recent software to ensure that vulnerability of old version has been fixed, and hacker can not exploit the known vulnerability. Thus the system is seem most security
upvoted 1 times
...
...
iweihermueller
3 years, 8 months ago
How can the answer not be A?
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...