CAF-3 · Chapter 16 · Question 8 of 15
An organization is building a new mobile banking app. Management mandates that stringent security testing, code reviews, and vulnerability scans must happen at every single phase of the System Development Life Cycle (SDLC) before the app is launched. This represents:
Test yourself: pick an answer
Reveal answer & explanation
Correct answer: B) Program Development Controls
Explanation
Program Development Controls ensure that new systems are built securely from the ground up by integrating security testing and quality assurance into every phase of the software development lifecycle
More The 5 Key Components of ITGCs (Application Scenarios) MCQs
- Q10Before deploying a major software update to the live ERP system, the IT team runs the new code in an isolated "sandbox" environment to…
- Q11Before designing or purchasing any new IT controls, the Chief Information Security Officer (CISO) conducts a thorough review to identify…
- Q12Six months after implementing a new Role-Based Access Control policy, the IT audit team evaluates the system logs to ensure the controls…
- Q13A global retail brand struggles to maintain a unified ITGC framework because its European branches must follow GDPR privacy laws, while…
- Q14An organization implements such strict and complex IT General Controls that employees find it difficult to complete basic daily tasks…
