Which of the following recommendations would BEST address the risk with minimal disruption to the business?

In a 24/7 processing environment, a database contains several privileged application accounts with passwords set to never expire.

Which of the following recommendations would BEST address the risk with minimal disruption to the business?
A . Modify applications to no longer require direct access to the database.
B. Introduce database access monitoring into the environment
C. Modify the access management policy to make allowances for application accounts.
D. Schedule downtime to implement password changes.

Answer: B

Latest CISA Practice Questions with 2694 Q&As

Updated Study Material | Instant Download | Detailed Answers and Explanations

Subscribe
Notify of
guest
0 Comments