CA Information Systems 4 — Questions and Answers
Question 1: Which of the following best describes a 'phishing' attack?
- Exploiting unpatched software vulnerabilities
- Deceiving users into revealing credentials through fraudulent communications (Correct answer)
- Intercepting data packets on a network
- Overwhelming a server with excessive traffic
Correct answer: Deceiving users into revealing credentials through fraudulent communications
Phishing uses deceptive emails or websites that impersonate legitimate entities to trick users into disclosing sensitive information.
Question 2: In an ERP system, a 'three-way match' refers to matching:
- Invoice, purchase order, and receiving report (Correct answer)
- Budget, actual, and variance reports
- General ledger, sub-ledger, and trial balance
- User ID, password, and security token
Correct answer: Invoice, purchase order, and receiving report
A three-way match compares the vendor invoice, purchase order, and receiving report to ensure agreement before payment is authorized.
Question 3: Which network security device inspects incoming and outgoing traffic based on predefined rules to block unauthorized access?
- Router
- Hub
- Firewall (Correct answer)
- Switch
Correct answer: Firewall
A firewall monitors and filters network traffic based on security rules, blocking unauthorized connections while permitting legitimate traffic.
Question 4: Recovery Time Objective (RTO) is defined as:
- The maximum amount of data loss measured in time that is acceptable after a disaster
- The target duration within which a system must be restored after a disruption (Correct answer)
- The cost estimate for recovering IT systems after an incident
- The frequency at which data backups must be performed
Correct answer: The target duration within which a system must be restored after a disruption
RTO specifies the maximum tolerable downtime before a system must be operational again to avoid unacceptable business impact.
Question 5: Which of the following is an example of a preventive IT control?
- Reviewing exception reports after processing
- Conducting a post-implementation audit
- Requiring dual authorization for wire transfers over $50,000 (Correct answer)
- Reconciling daily transaction totals to source documents
Correct answer: Requiring dual authorization for wire transfers over $50,000
Requiring dual authorization prevents unauthorized transactions from occurring in the first place, making it a preventive control.
Question 6: What is the primary function of a public key infrastructure (PKI)?
- Providing centralized antivirus protection
- Managing digital certificates and cryptographic keys to enable secure communication (Correct answer)
- Monitoring network traffic for intrusion attempts
- Compressing files for efficient data transmission
Correct answer: Managing digital certificates and cryptographic keys to enable secure communication
PKI issues, manages, and revokes digital certificates that authenticate identities and enable encrypted communications.
Question 7: A company's IT policy requires that terminated employees' access be revoked within one hour. Which process supports this requirement?
- Change management
- Incident response
- Identity and access management (IAM) (Correct answer)
- Vulnerability management
Correct answer: Identity and access management (IAM)
IAM processes govern the provisioning and deprovisioning of user access, ensuring timely removal of rights for terminated employees.
Which of the following best describes a 'phishing' attack?