CHAPTER 6

Information Asset Protection

This chapter covers CISA Domain 5, “Protection of Information Assets,” and discusses the following topics:

•   Information security management

•   Logical access controls

•   Network security

•   Environmental security

•   Physical security

•   Privacy

The topics in this chapter represent 27 percent of the CISA examination.

Information assets consist of information and information systems. Information includes software, tools, and data. Information system is an inclusive term that encompasses servers, workstations, mobile devices, network devices, gateways, appliances, IoT devices, and applications. An information system can be a single device or a collection of systems that work together for some business ...

Get CISA Certified Information Systems Auditor All-in-One Exam Guide, Fourth Edition, 4th Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.