What general control component includes the physical and virtual hardware, software, networks, and facilities that support the entire IT environment?
IT INFRASTRUCTURE
What general control component involves policies and procedures to protect systems and data from unauthorized access, including user authentication and physical security?
SECURITY MANAGEMENT
What general control component covers controls over how software is selected, developed, tested, and updated to ensure it meets business needs and is secure?
SOFTWARE ACQUISITION, DEVELOPMENT, AND MAINTENANCE
What general control component includes procedures to keep systems running smoothly, such as backups, system monitoring, and incident response?
OPERATIONS AND MAINTENANCE
What general control component involves mechanisms that restrict system and data access to authorized users only, often involving passwords, roles, and permissions?
ACCESS CONTROLS
What general control component includes controls over the physical environment (like power and cooling) and network security to ensure reliable and secure IT operations?
DATA CENTER AND NETWORK OPERATIONS
What general control component involves processes to manage and authorize changes to IT systems and software, minimizing risks from unauthorized or faulty modifications?
CHANGE MANAGEMENT
Which general control area covers the physical and virtual components like servers, networks, and software that support IT operations?
IT INFRASTRUCTURE
What control area involves establishing policies and safeguards to prevent unauthorized access to systems and data?
SECURITY MANAGEMENT
Which general control ensures that software is properly acquired, developed, tested, and updated to meet organizational requirements?
SOFTWARE ACQUISITION, DEVELOPMENT, AND MAINTENANCE
What area focuses on procedures like backups, system monitoring, and routine maintenance to keep IT systems running effectively?
OPERATIONS AND MAINTENANCE
Which control restricts system and data access to authorized individuals through mechanisms like passwords and permissions?
ACCESS CONTROLS
What general control area manages the physical environment of data centers and network security to ensure reliable IT operations?
DATA CENTER AND NETWORK OPERATIONS
Which control area governs the process of approving and managing changes to IT systems and software to avoid unauthorized modifications?
CHANGE MANAGEMENT