Exam CISA All QuestionsBrowse all questions from this exam
Question 624

An IS auditor has been asked to perform a post-implementation assessment of a new corporate human resources (HR) system. Which of the following control areas would be MOST important to review for the protection of employee information?

    Correct Answer: B

    The most important control area to review for the protection of employee information in a post-implementation assessment of a new corporate human resources system is authentication mechanisms. Authentication mechanisms ensure that only authorized individuals can access sensitive employee information. By verifying that strong authentication protocols are in place, the risk of unauthorized access and potential data breaches is minimized, thereby protecting employee information.

Discussion
MunaMOption: B

Answer should be B

StaanleeOption: B

Should be B. Authentication mechanisms

m4s7erOption: B

answer is B

gomboragchaaOption: B

I think it must be B

SwallowsOption: A

Option B, "Authentication Mechanisms," is directly related to protecting employee information, but data retention practices are more directly important in protecting employee information. Authentication mechanisms are important in controlling access to systems, but in this case, data retention and management practices are of primary concern. Therefore, to verify protection of employee information, it is most appropriate to review option A's data retention practices.