新しいアプリケーションを組織の運用環境にリリースする前に、適切なテストが行われ、ロールバック計画が実施されていることを確認するために、次のどれを実施する必要がありますか?
正解:A
Comprehensive and Detailed Step-by-Step Explanation:
AChange Approval Board (CAB)ensures thatall necessary testing and rollback planshave been reviewed before deployment.
* Option A (Correct):ACABensures thatchanges are reviewed, tested, and approved, minimizing risks before an application is deployed. This includes confirming thatrollback plans are in place.
* Option B (Incorrect):Standardized change requestsare important but donot guarantee review and approvalby management and stakeholders.
* Option C (Incorrect):Third-party approvalmay be useful, but internalgovernance and control via a CABis more comprehensive.
* Option D (Incorrect):Secure code reviewshelp identify vulnerabilities, but they donot confirm proper deployment and rollback procedures.
Reference:ISACA CISA Review Manual -Domain 3: Information Systems Acquisition, Development, and Implementation- Coverschange management and deployment best practices.