CISA Exam QuestionsBrowse all questions from this exam

CISA Exam - Question 1320


An IS auditor identifies that an accounts payable clerk has direct access to a payment file after it has been generated. The MOST significant risk to the organization is that payments may be:

Show Answer
Correct Answer:

Discussion

1 comment
Sign in to comment
CCNPWILLOption: C
May 2, 2025

SoD principle is violated here. The same person shouldnt have access to both of those actions. this introduces things like fraud. C is correct. Altered.