Exam CISA All QuestionsBrowse all questions from this exam
Question 423

Which of the following is the MOST appropriate control to ensure integrity of online orders?

    Correct Answer: B

    Digital signatures are the most appropriate control to ensure the integrity of online orders. They ensure both the integrity and authenticity of a message by verifying that the data has not been altered and by confirming the identity of the sender. While public key encryption focuses mainly on confidentiality, digital signatures specifically provide integrity assurance.

Discussion
saado9Option: B

B. Digital signature

MohamedAbdelaalOption: B

whats the link between data integrity and the encryption

SwallowsOption: B

While public key encryption (option A) can also help protect the confidentiality and integrity of online orders by encrypting the data during transmission, it primarily focuses on confidentiality rather than integrity verification. Digital signatures, on the other hand, are specifically designed to provide integrity assurance by verifying the authenticity and unaltered nature of the data.

KAP2HURUFOption: A

Applications of Public Key Encryption: Secure communication channels: Public key encryption is used in various protocols like HTTPS (Secure Hypertext Transfer Protocol) to secure communication between web browsers and servers, ensuring the confidentiality and integrity of data transmission. Digital signatures: Public key encryption forms the foundation for digital signatures, which allow users to electronically sign documents to verify their authenticity and integrity. Secure email communication: Public key encryption can be used to encrypt email messages, ensuring only the intended recipient can read them.

KAP2HURUF

https://www.isaca.org/resources/news-and-trends/industry-news/2018/pki-explained-why-it-is-necessary-and-relevant-now-more-than-ever

KAP2HURUF

i think since its online u need more than digital signature, u need SSL/TLS to secure the connection, thus A is more wide spectrum than B CMIIW

shalota2

I think is B. Be careful it is saying public key encryption not public key infrastructure

oldmagicOption: B

A Is more about confidentiality, It alone does not provide integrity. digital signature ensures both the integrity and authenticity of a message.

3008Option: A

pki method

3008

sorry, b is answer