Logical Access Controls Flashcards
7 cards from real CISA practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Logical Access Controls flashcards as text
An organization uses biometric authentication for physical access but relies solely on passwords for system access. From a logical access control perspective, what recommendation should an IS auditor make?
Answer: Implement multi-factor authentication for system access
MFA adds an additional verification layer beyond passwords, significantly strengthening logical access controls.
Which of the following is the MOST effective control to detect unauthorized privilege escalation in an operating system?
Answer: Real-time monitoring and alerting of privilege use
Real-time monitoring detects and alerts on privilege escalation events as they occur, enabling immediate response.
A CISA candidate reviews a system where owners of data objects can grant access to other users at their discretion. This is characteristic of:
Answer: Discretionary Access Control
In DAC, the data owner has discretion to grant or restrict access to their objects as they see fit.
An auditor discovers that application developers have read access to production data. Which fundamental security principle is being violated?
Answer: Segregation of duties
Developers should not have access to production environments; segregation of duties prevents conflicts of interest and reduces fraud risk.
What is the PRIMARY purpose of conducting periodic user access reviews?
Answer: To identify and remove excessive or inappropriate access rights
Access reviews ensure access rights remain appropriate as roles change, preventing accumulation of unnecessary privileges over time.
An IS auditor finds that a system allows three consecutive failed login attempts before locking the account for only 1 minute. What is the GREATEST risk this presents?
Answer: Automated brute-force attacks can cycle through the lockout period
A short lockout period allows automated tools to rapidly retry passwords, effectively bypassing the account lockout control.
Which of the following BEST supports the audit trail requirements for logical access controls?
Answer: Centralizing logs to a write-once, tamper-evident repository
Centralized, tamper-evident log storage ensures log integrity and prevents administrators from covering their tracks.