A company's accounting department experienced a system compromise when an infected external flash drive was physically connected to a local database workstation. Which of the following internal control measures is most effective in preventing this specific type of security threat?
- Disabling external USB hardware ports and enforcing endpoint security policiesAnswer
- BInstalling network firewalls to filter incoming remote traffic
- CScheduling automated daily offsite backups of accounting records
- DConverting batch data processing to real-time online processing
Answer
Disabling external USB hardware ports and enforcing endpoint security policies
Disabling physical USB ports and restricting endpoint devices directly blocks external media from executing malicious scripts locally on accounting workstations.
Step-by-Step Solution
Key Concept
Physical and Endpoint Access Security in Computerized Accounting Systems