Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca Exam Cybersecurity-Audit-Certificate Topic 1 Question 14 Discussion

Actual exam question for Isaca's ISACA Cybersecurity Audit Certificate exam
Question #: 14
Topic #: 1
[All ISACA Cybersecurity Audit Certificate Questions]

What should be an IS auditor's GREATEST concern when an organization's virtual private network (VPN) is implemented on employees' personal mobile devices?

Show Suggested Answer Hide Answer
Suggested Answer: B

When employees use personal mobile devices to access a VPN, the greatest concern for an IS auditor is the potential for sensitive data to be stored in an unsecured manner. If data is stored in plain text, it could be easily accessed by unauthorized parties if the device is lost, stolen, or compromised. This risk is heightened when the devices are not managed by the organization's IT department, which would typically enforce security policies such as encryption.


Contribute your Thoughts:

Joye
5 days ago
That's also a major concern. It could lead to data breaches if the device is lost or stolen.
upvoted 0 times
...
Rose
6 days ago
That's a valid point, but what about the risk of users storing data in plain text on their mobile devices?
upvoted 0 times
Sueann
9 hours ago
C) Users may access the corporate network from unauthorized devices.
upvoted 0 times
...
Dominic
1 days ago
B) Users may store the data in plain text on their mobile devices.
upvoted 0 times
...
Iola
2 days ago
A) Users may access services over the VPN that are network resource intensive.
upvoted 0 times
...
...
Joye
7 days ago
I think an IS auditor's greatest concern would be users accessing the corporate network from unauthorized devices.
upvoted 0 times
...

Save Cancel