QS0032-02: Separation of Duties Policy Flashcards

1
Q

QS0032-01: Separation of Duties Policy

Which departments are considered for short-term rotation during employee absence?

A

DevOps Administrators

Client application support

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

QS0032-01: Separation of Duties Policy

Which control mechanism should be used to prevent an individual from accessing data that is not necessary to perform an assigned function?

A

Access control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

QS0032-01: Separation of Duties Policy

What should be established to ensure verification of activity or quality of work?

A

Workflows

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

QS0032-01: Separation of Duties Policy

Suppose duties cannot be separated or subdivided. What action should be taken?

A

Implement compensating rules to mitigate associated business risk as agreed to by the application and systems owner.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly