CISA Questions (501 - 600) with 100% Correct Answers
In auditing a database environment, an IS auditor will be MOST concerned if the
database administrator (DBA) is performing which of the following functions?
Select an answer:
A.
Performing database changes according to change management procedures
B.
Installing patches or upgrades to the operating system
C.
Sizing table space and consulting on table join limitations
D.
1
,©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM
Performing backup and recovery procedures - Answer✔️✔️-You answered D. The
correct answer is B.
A. Performing database changes according to change management procedures
would be a normal function of the database administrator (DBA) and would be
compliant with the procedures of the organization.
B. Installing patches or upgrades to the operating system is a function that should
be performed by a systems administrator, not by a DBA. If a DBA were
performing this function, there would be a risk based on inappropriate segregation
of duties.
C. A DBA is expected to support the business through helping design, create and
maintain databases and the interfaces to the databases.
D. The DBA often performs or supports database backup and recovery procedures.
The database administrator (DBA) suggests that database efficiency can be
improved by denormalizing some tables. This would result in:
2
,©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM
Select an answer:
A.
loss of confidentiality.
B.
increased redundancy.
C.
unauthorized accesses.
D.
application malfunctions. - Answer✔️✔️-You are correct, the answer is B.
3
, ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM
A. Denormalization should not cause loss of confidentiality even though
confidential data may be involved. The database administrator (DBA) should
ensure that access controls to the databases remain effective.
B. Normalization is a design or optimization process for a relational database that
minimizes redundancy; therefore, denormalization would increase redundancy.
Redundancy, which is usually considered positive when it is a question of resource
availability, is negative in a database environment because it demands additional
and otherwise unnecessary data handling efforts. Denormalization is sometimes
advisable for functional reasons.
C. Denormalization pertains to the structure of the database, not the access
controls. It should not result in unauthorized access.
D. Denormalization may require some changes to the calls between databases and
applications, but should not cause application malfunctions.
The objective of concurrency control in a database system is to:
4