Certified Information Systems Auditor (CISA) — Question 622
Which of the following findings would be of GREATEST concern when auditing an organization's end-user computing (EUC)?
Answer options
- A. Reduced oversight by the IT department
- B. Inability to monitor EUC audit logs and activities
- C. Errors flowed through to financial statements
- D. Inconsistency of patching processes being followed
Correct answer: B
Explanation
The inability to monitor EUC audit logs and activities is the greatest concern because it hampers the organization's ability to detect and respond to security incidents or compliance issues. While reduced oversight, errors in financial statements, and inconsistent patching are important, they can be addressed through other means, whereas lack of monitoring directly impacts the security and integrity of the EUC environment.