Exam CISA All QuestionsBrowse all questions from this exam
Question 538

Which of the following is a corrective control?

    Correct Answer: C

    Executing emergency response plans is a corrective control because it is implemented after an emergency or incident has occurred, with the goal of mitigating the impact and returning to normal operations as quickly as possible. Corrective controls are designed to correct and recover from situations that have already caused harm or disruptions. This contrasts with preventive controls, which aim to prevent issues before they happen, and detective controls, which aim to identify issues that have already occurred.

Discussion
shiowbahOption: C

C. Executing emergency response plans

SwallowsOption: C

Of the options provided, "Executing emergency response plans" (option C) is more likely to be a corrective control. Emergency response plans are typically activated in response to incidents or emergencies to contain, mitigate, and resolve the situation. These plans outline specific actions and procedures to be followed in the event of various types of emergencies, such as natural disasters, cybersecurity breaches, or physical security incidents. Verifying duplicate calculations in data processing (option A) is more likely to be a preventive control. This control aims to prevent errors or discrepancies from occurring in the first place by ensuring the accuracy and integrity of data processing activities.

3008Option: C

C is correct.

meelaanOption: B

B is talking about correcting

ChangwhaOption: A

A. Verifying duplicate calculations in data processing