Free SSCP Exam Braindumps (page: 78)

Page 77 of 269

What is RAD?

  1. A development methodology
  2. A project management technique
  3. A measure of system complexity
  4. Risk-assessment diagramming

Answer(s): A

Explanation:

RAD stands for Rapid Application Development.
RAD is a methodology that enables organizations to develop strategically important systems faster while reducing development costs and maintaining quality.
RAD is a programming system that enables programmers to quickly build working programs.
In general, RAD systems provide a number of tools to help build graphical user interfaces that would normally take a large development effort.
Two of the most popular RAD systems for Windows are Visual Basic and Delphi. Historically, RAD systems have tended to emphasize reducing development time, sometimes at the expense of generating in-efficient executable code. Nowadays, though, many RAD systems produce extremely faster code that is optimized.
Conversely, many traditional programming environments now come with a number of visual tools to aid development. Therefore, the line between RAD systems and other development environments has become blurred.


Reference:

Information Systems Audit and Control Association, Certified Information Systems Auditor 2002 review manual, chapter 6: Business Application System Development, Acquisition, Implementation and Maintenance (page 307)
http://www.webopedia.com



Which of the following best describes the purpose of debugging programs?

  1. To generate random data that can be used to test programs before implementing them.
  2. To ensure that program coding flaws are detected and corrected.
  3. To protect, during the programming phase, valid changes from being overwritten by other changes.
  4. To compare source code versions before transferring to the test environment

Answer(s): B

Explanation:

Debugging provides the basis for the programmer to correct the logic errors in a program under development before it goes into production.


Reference:

Information Systems Audit and Control Association, Certified Information Systems Auditor 2002 review manual, chapter 6: Business Application System Development, Acquisition, Implementation and Maintenance (page 298).



Which of the following would best describe the difference between white-box testing and black-box testing?

  1. White-box testing is performed by an independent programmer team.
  2. Black-box testing uses the bottom-up approach.
  3. White-box testing examines the program internal logical structure.
  4. Black-box testing involves the business units

Answer(s): C

Explanation:

Black-box testing observes the system external behavior, while white-box testing is a detailed exam of a logical path, checking the possible conditions.


Reference:

Information Systems Audit and Control Association, Certified Information Systems Auditor 2002 review manual, chapter 6: Business Application System Development, Acquisition, Implementation and Maintenance (page 299).



Which of the following is a not a preventative control?

  1. Deny programmer access to production data.
  2. Require change requests to include information about dates, descriptions, cost analysis and anticipated effects.
  3. Run a source comparison program between control and current source periodically.
  4. Establish procedures for emergency changes.

Answer(s): C

Explanation:

Running the source comparison program between control and current source periodically allows detection, not prevention, of unauthorized changes in the production environment. Other options are preventive controls.


Reference:

Information Systems Audit and Control Association, Certified Information Systems Auditor 2002 review manual, chapter 6: Business Application System Development, Acquisition, Implementation and Maintenance (page 309).






Post your Comments and Discuss ISC SSCP exam with other Community members:

SSCP Exam Discussions & Posts