An auditor is auditing an organization’s system-hardening policy within its vulnerability management process. The auditor has examined the organization’s system-hardening standards and wants to examine the configuration of some of the production servers. What is the best method for the auditor to obtain evidence?

🎲 Try a Random Question  |  Total Questions in Quiz: 63  |  🧠 Study this quiz with Flashcards
This question is part of a full practice quiz:
CISA Domain 1: Information Systems Auditing Process — practice the complete quiz, review flashcards, or try a random question.


An auditor is auditing an organization’s system-hardening policy within its vulnerability management process. The auditor has examined the organization’s system-hardening standards and wants to examine the configuration of some of the production servers. What is the best method for the auditor to obtain evidence?