General Controls Definitions Flashcards

(14 cards)

1
Q

What general control component includes the physical and virtual hardware, software, networks, and facilities that support the entire IT environment?

A

IT INFRASTRUCTURE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What general control component involves policies and procedures to protect systems and data from unauthorized access, including user authentication and physical security?

A

SECURITY MANAGEMENT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What general control component covers controls over how software is selected, developed, tested, and updated to ensure it meets business needs and is secure?

A

SOFTWARE ACQUISITION, DEVELOPMENT, AND MAINTENANCE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What general control component includes procedures to keep systems running smoothly, such as backups, system monitoring, and incident response?

A

OPERATIONS AND MAINTENANCE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What general control component involves mechanisms that restrict system and data access to authorized users only, often involving passwords, roles, and permissions?

A

ACCESS CONTROLS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What general control component includes controls over the physical environment (like power and cooling) and network security to ensure reliable and secure IT operations?

A

DATA CENTER AND NETWORK OPERATIONS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What general control component involves processes to manage and authorize changes to IT systems and software, minimizing risks from unauthorized or faulty modifications?

A

CHANGE MANAGEMENT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which general control area covers the physical and virtual components like servers, networks, and software that support IT operations?

A

IT INFRASTRUCTURE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What control area involves establishing policies and safeguards to prevent unauthorized access to systems and data?

A

SECURITY MANAGEMENT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which general control ensures that software is properly acquired, developed, tested, and updated to meet organizational requirements?

A

SOFTWARE ACQUISITION, DEVELOPMENT, AND MAINTENANCE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What area focuses on procedures like backups, system monitoring, and routine maintenance to keep IT systems running effectively?

A

OPERATIONS AND MAINTENANCE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which control restricts system and data access to authorized individuals through mechanisms like passwords and permissions?

A

ACCESS CONTROLS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What general control area manages the physical environment of data centers and network security to ensure reliable IT operations?

A

DATA CENTER AND NETWORK OPERATIONS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which control area governs the process of approving and managing changes to IT systems and software to avoid unauthorized modifications?

A

CHANGE MANAGEMENT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly