Please note: In order to obtain your CPE certificate for having passed the quiz, you must turn off your pop-up blocker.
Lainhart Article
Parker Article
Yu, Tang, Poon, and Chen Article
Buxton Article
Ramakrishnan Article
CPE Quiz #
75
Based on Information Systems Control Journal Volume 6, 2000
A passing score of 75 percent qualifies for one (1) hour of CISA/CISM/CGEIT Continuing Professional Education (CPE) Credit
Your results will appear in a new window.
Enter your name below so it displays on the quiz results page:
Name:
Lainhart Articlee1. The author cites a survey by ASIS that Fortune 1000 Companies sustained losses of more than $45 billion from thefts of proprietary information in 1999. 2. Good IT governance should usually drive enterprise governance, since IT governance is a usually more mature than newer enterprise governance. 3. Common risks of doing business on the Internet include interception, redirection and identification, among others. Identification risk exists because it is relatively easy for people to assume a different or fraudulent identity on the Internet. 4. Redirection risk is simply reading messages meant for others by capturing and redirecting clear-text messages sent over the Internet. 5. Advantages of new, more integrated e-commerce suppliers are that software tools now permit these web developers to manage security risks at both their sites and the sites of their clients.
Parker Article6. Business continuity planning activities were significantly enhanced at many organizations as a result of Year 2000 projects. However, many organizations have not sustained their progress in this area. 7. Quality management and testing activities were significantly enhanced at many organizations as a result of Year 2000 projects. However, many organizations have not sustained their progress in these areas. 8. The author's experience is that Year 2000 projects brought corporations together as never before. These projects aligned IT professionals, end users, executives and the board of directors in a very focused manner.
Yu, Tang, Poon, and Chen Article9. White box user acceptance testing builds a test suite from computer program specifications, without knowledge of program logic or how the program was written. 10. The "all-paths" strategy is the most practical and most thorough method of white box testing, since it tests all paths within a program. 11. A less rigorous approach to user acceptance testing than all-statements testing is sampling. Although less rigorous, it has the benefit of being more cost-effective.
Buxton Article12. When the author arrived in Bosnia in 1999, most of the country's production capacity was managed by the state. 13. At this time, Bosnia suffered from considerable corruption and crime, with which the auditing community was well prepared to deal. 14. IS auditing and internal auditing professional organizations were initiated by the military, in part to respond to the corruption in Bosnia.
Ramakrishnan Article15. Secure electronic transaction (SET) protocol uses public key cryptography to meet its objectives. 16. Key elements of SET and public key cryptography are digital certificates and certification authorities. Trusted third parties, also known as digital certificates, issue certifications that specifically identify parties to a public key cryptography and SET transaction.
|
Your results will appear in a new window.
|
Please note: This quiz requires a JavaScript-enabled browser.
If the quiz is not displayed above, you either do not have a browser which
supports JavaScript or JavaScript support has been disabled.
|
|
|