CPA · Question 36 · Area II: Security
An auditor is testing a client's firewall configuration. They notice a rule that allows 'Any' source IP to access the database port (1433) directly from the internet. Which security principle is violated?
Answer options:
Separation of Duties
Least Privilege
Non-repudiation
Availability
82 questions · hints · full answers · grading