(ISC)2(ISC)2
CISSP · Question #269
CISSP Question #269: Real Exam Question with Answer & Explanation
Sign in or unlock CISSP to reveal the answer and full explanation for question #269. The question stem and answer options stay visible for context.
Submitted by mike_84· Mar 5, 2026Security and Risk Management
Question
A database administrator is asked by a high-ranking member of management to perform specific changes to the accounting system database. The administrator is specifically instructed to not track or evidence the change in a ticket. Which of the following is the BEST course of action?
Options
- AIgnore the request and do not perform the change.
- BPerform the change as requested, and rely on the next audit to detect and report the situation.
- CPerform the change, but create a change ticket regardless to ensure there is complete
- DInform the audit committee or internal audit directly using the corporate whistleblower process.
Unlock CISSP to see the answer
You've previewed enough free CISSP questions. Unlock CISSP for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Ethics#Corporate governance#Whistleblower policy#Change management