CISA Exam QuestionsBrowse all questions from this exam

CISA Exam - Question 538


Which of the following is a corrective control?

Show Answer
Correct Answer: C

Executing emergency response plans is a corrective control because it is implemented after an emergency or incident has occurred, with the goal of mitigating the impact and returning to normal operations as quickly as possible. Corrective controls are designed to correct and recover from situations that have already caused harm or disruptions. This contrasts with preventive controls, which aim to prevent issues before they happen, and detective controls, which aim to identify issues that have already occurred.

Discussion

5 comments
Sign in to comment
shiowbahOption: C
Nov 18, 2023

C. Executing emergency response plans

ChangwhaOption: A
Jul 22, 2023

A. Verifying duplicate calculations in data processing

meelaanOption: B
Oct 3, 2023

B is talking about correcting

3008Option: C
Nov 25, 2023

C is correct.

SwallowsOption: C
Jun 9, 2024

Of the options provided, "Executing emergency response plans" (option C) is more likely to be a corrective control. Emergency response plans are typically activated in response to incidents or emergencies to contain, mitigate, and resolve the situation. These plans outline specific actions and procedures to be followed in the event of various types of emergencies, such as natural disasters, cybersecurity breaches, or physical security incidents. Verifying duplicate calculations in data processing (option A) is more likely to be a preventive control. This control aims to prevent errors or discrepancies from occurring in the first place by ensuring the accuracy and integrity of data processing activities.