Security Auditing, Monitoring, and Digital
Forensics Overview Exam | Questions with 100%
Correct Answers | Verified | Latest Update 2026
Save
Terms in this set (93)
What is the purpose of a security To evaluate a computer system's operations against
audit? security goals and avoid data breaches.
What are the two types of audit Manual and automated.
tests?
What is the first step in determining if Define how the system is supposed to work.
a system has worked as intended?
What does monitoring in security Reviewing and measuring all controls to capture
auditing involve? actions and changes in the environment.
What is the role of security controls To address and mitigate risks associated with
in risk management? security policies.
What should a security policy Acceptable and unacceptable actions within the
define? organization.
What are the four permission levels Promiscuous, Permissive, Prudent, Paranoid.
in security policies?
, What is the purpose of conducting To ensure appropriate security levels, correct
security audits? installation of controls, and effectiveness of
controls.
How do security audits affect Consistent auditing increases trust, making
customer confidence? customers more willing to share sensitive
information.
What are the three levels of SOC SOC 1, SOC 2, SOC 3.
reports?
What is an audit plan? A document that defines objectives, systems to
review, and areas of assurance to check.
What is included in defining the Surveying sites, reviewing documentation, and
scope of an audit plan? checking logs.
What is a benchmark in auditing? The standard to which a system is compared to
determine secure configuration.
Name one auditing benchmark. ISO 27002.
What are some methods for Questionnaires, interviews, observation, checklists,
collecting audit data? and reviewing documentation.
What is the role of identity To manage approval processes and authentication
management in security audits? mechanisms.
What is the importance of a To ensure effective enforcement of security
password policy in security? measures across the organization.
What should organizations monitor Sufficient monitoring systems.
to detect unauthorized access?
Forensics Overview Exam | Questions with 100%
Correct Answers | Verified | Latest Update 2026
Save
Terms in this set (93)
What is the purpose of a security To evaluate a computer system's operations against
audit? security goals and avoid data breaches.
What are the two types of audit Manual and automated.
tests?
What is the first step in determining if Define how the system is supposed to work.
a system has worked as intended?
What does monitoring in security Reviewing and measuring all controls to capture
auditing involve? actions and changes in the environment.
What is the role of security controls To address and mitigate risks associated with
in risk management? security policies.
What should a security policy Acceptable and unacceptable actions within the
define? organization.
What are the four permission levels Promiscuous, Permissive, Prudent, Paranoid.
in security policies?
, What is the purpose of conducting To ensure appropriate security levels, correct
security audits? installation of controls, and effectiveness of
controls.
How do security audits affect Consistent auditing increases trust, making
customer confidence? customers more willing to share sensitive
information.
What are the three levels of SOC SOC 1, SOC 2, SOC 3.
reports?
What is an audit plan? A document that defines objectives, systems to
review, and areas of assurance to check.
What is included in defining the Surveying sites, reviewing documentation, and
scope of an audit plan? checking logs.
What is a benchmark in auditing? The standard to which a system is compared to
determine secure configuration.
Name one auditing benchmark. ISO 27002.
What are some methods for Questionnaires, interviews, observation, checklists,
collecting audit data? and reviewing documentation.
What is the role of identity To manage approval processes and authentication
management in security audits? mechanisms.
What is the importance of a To ensure effective enforcement of security
password policy in security? measures across the organization.
What should organizations monitor Sufficient monitoring systems.
to detect unauthorized access?