What is a prevalent risk associated with the development of end-user computing applications?

Prepare for the CISA Domain 4 Exam with tailored quizzes. Enhance your auditing skills with detailed explanations and practice multiple-choice questions for cybersecurity professionals. Optimize your study time and ensure success!

The correct choice highlights a significant risk inherent in the development of end-user computing applications. End-user computing refers to systems and applications developed by non-IT professionals to meet their own needs. One prevalent concern is that these applications often circumvent formal IT processes, leading to a lack of rigorous testing and adherence to IT general controls.

Without subjecting these applications to systematic testing, the risk of bugs, security vulnerabilities, and compatibility issues increases significantly. IT general controls are essential for ensuring the integrity, confidentiality, and availability of data. They typically include measures such as user access controls, change management processes, and system operations procedures. When end-user applications are not managed by IT, they may not align with these controls, resulting in potential compliance and security issues. This aspect fundamentally highlights the importance of having properly governed application development practices to mitigate inherent risks effectively.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy