Back to Questions
CISA
QUESTION #6828
Question 1
An IS auditor finds that database administrators regularly use shared administrative accounts rather than individual accounts. What is the MOST significant control deficiency?
Correct Answer Explanation
Shared accounts eliminate individual accountability—a fundamental security and auditing principle. When multiple people use the same credentials, it becomes impossible to determine who performed specific actions, preventing investigation of incidents, fraud detection, and establishing non-repudiation.
Sign in to join the conversation and share your thoughts.
Log In to Comment