CISA Protection of Information Assets • Set 7
CISA Protection of Information Assets Practice Test 7 — 15 questions with explanations. Free, no signup.
An IS auditor is reviewing the endpoint security controls of a hospital that permits clinicians to use personal laptops and tablets to access the electronic health record (EHR) system. The auditor finds that the organization issued written acceptable-use agreements, but devices are not inspected, and no enrollment process exists. Which of the following is the MOST significant risk arising from this situation?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.