Home > Consumer Behavior 101 > Quizzes > CISA Certified Information Systems Auditor Vocab
CISA Certified Information Systems Auditor Vocab
Fast practice, instant feedback. Timer auto-submits when time’s up.
Avg score: 32% Most missed: “An evaluation of any part of an implementation project (e.g.; project management…”
CISA Certified Information Systems Auditor Vocab
Time left 00:00
25 Questions

1. Detection on the basis of whether the system activity matches that defined as bad

2. An entity (department; cost center; division or other group) responsible for entering and maintaining budget data.

3. Those policies and procedures implemented to achieve a related control objective

4. The number of distinct locations that may be referred to with the machine address. For most binary machines; it is equal to 2n; where n is the number of bits in the machine address.

5. A computer file storage format in which one record follows another. Records can be accessed sequentially only. It is required with magnetic tape.

6. A series of tests designed to ensure that the modified program interacts correctly with other system components. These test procedures typically are performed by the system maintenance staff in their development library.

7. The quality or state of not being named or identified

8. Impartial point of view which allows the IS auditor to act objectively and with fairness

9. The person responsible for implementing; monitoring and enforcing security rules established and authorized by management

10. Used in data encryption; it uses an encryption key; as a public key; to encrypt the plaintext to the ciphertext. It uses the different decryption key; as a secret key; to decrypt the ciphertext to the corresponding plaintext. In contrast to a private

11. A cipher technique whereby different cryptographic keys are used to encrypt and decrypt a message (see public key cryptosystems)

12. A database structured in a tree/root or parent/child relationship. Each parent can have many children; but each child may have only one parent.

13. Any information collection mechanism utilized by an intrusion detection system

14. A hierarchical database that is distributed across the Internet that allows names to be resolved into IP addresses (and vice versa) to locate services such as web and e-mail servers

15. Used to electronically scan and input written information from a source document

16. A manual or automated log of all updates to data files and databases

17. Changing data with malicious intent before or during input into the system

18. A communication network that serves several users within a specified geographic area. It is made up of servers; workstations; a network operating system and a communications link. Personal computer LANs function as distributed processing systems in w

19. Permanent reference data used in transaction processing. These data are changed infrequently; such as a product price file or a name and address file.

20. A form of modulation in which data signals are pulsed directly on the transmission medium without frequency division and usually utilize a transceiver. In baseband the entire bandwidth of the transmission medium (e.g.; coaxial cable) is utilized for

21. The level to which transactions can be traced and audited through a system

22. A public end-to-end digital telecommunications network with signaling; switching and transport capabilities supporting a wide range of service accessed by standardized interfaces with integrated customer control. The standard allows transmission of d

23. The password used to gain access when a system is first installed on a computer or network device. There is a large list published on the Internet and maintained at several locations. Failure to change these after the installation leaves the system v

24. A layer within the International Organization for Standardization (ISO)/Open Systems Interconnection (OSI) model. It is used in information transfers between users through application programs and other devices. In this layer various protocols are ne

25. Software used to administer logical security. It usually includes authentication of users; access granting according to predefined rules; monitoring and reporting functions.