Quiz 76 

 
Please note: In order to obtain your CPE certificate for having passed the quiz, you must turn off your pop-up blocker.

Chakravarty and Topper Article
Mienes Article

 

CPE Quiz # 76

Based on Information Systems Control Journal Volume 1, 2001

A passing score of 75 percent qualifies for one (1) hour of CISA/CISM/CGEIT Continuing Professional Education (CPE) Credit

Your results will appear in a new window.

Enter your name below so it displays on the quiz results page:

Name:

Chakravarty and Topper Article

1. The risk and control self-assessment (RCSA) model used by Stanford allows participants to vote on risk and control factors related to business objectives and processes. Voting takes place using an electronic polling system that captures feedback and reports it in real-time mode to the participants.
2. The RCSA model was considered effective by the authors as part of the annual IT risk assessment; however, it was judged not to be a good tool for assessing controls for a post-implementation systems review.
3. Risk criteria evaluated in the RCSA workshops included: non-compliance, property/liability loss, adverse publicity and failure to achieve program/business objectives.
4. Advantages of the RCSA process include that it is quick to identify problems and that problems can be well substantiated due to the large number of participants.
5. The authors consider RCSA an effective tool to replace traditional audits.
6. Analyzing the standard deviation for various risk and control factors allowed the participants to understand how much real agreement was in the group.

Mienes Article

7. VSE, VM and MVS are all operating systems that run on OS/390 mainframe computers.
8. Privileged instructions are those that can bypass OS/390 integrity and should generally be considered as part of an audit of OS/390 systems.
9. Management processes that contribute to the reliability of OS/390 systems include: DASD management, console management and change management.
10. Security packages such as RACF, ACF-2 and Top Secret offer log-on security and access control to data sets, since these features are not included with the base system.
11. Change management software such as Infoman/MVS and NetMan are used to control source and load libraries on the basis of a change management process.
12. Performance and capacity management software such as Opera and OPS/MVS can be used to automatically issue operator commands or even page someone, depending on needs to tune systems capacity.

Your results will appear in a new window.

Please note: This quiz requires a JavaScript-enabled browser. If the quiz is not displayed above, you either do not have a browser which supports JavaScript or JavaScript support has been disabled.