SOX
Development
Testing
SOD
True or False
100
SOX is an acryonym for this

What is Sarbanes-Oxley 

100

Who never wears a winter jacket, even in winter? 

Who is Josh?

100

UAT is performed in this environment

What is Stage? 

100

SOD is an acryonym for this

What is Segregation of Duties? 

100

A Test Approach is key control for new applications and changes to existing applications. 

What is True?

200

Type of controls that, if tested and found to be operating effectively, gives sufficient assurance for a happy conclusion to the Audit review

What are key controls?

200

Coding changes must be made in this environment

What is Development? 

200
This document drives the types of testing to be performed and if a detailed test plan is required
What is a test approach? 
200

Who in Corp Apps owns a Tesla? 

Who is Suresh?

200

A Physical DB Design Document is a key control for modifying existing applications

What is False?

300

Key items/steps required to be completed before moving to production.

What is the Definition of Done for Stage (DDS)? 

300

Approval is required by these roles prior to deployment to production

Who is Business and ETS Management? 

300

Who had a birthday in the month of May? 

Who is Gary or Roshni or Kapil 

300

Access to migrate code to Production and Stage for most applications is restricted to this group 

Who is ATS? 

300

A Demo to Stakeholders is a key control

What is False?

400

Who in Corp Apps plays Tennis on a weekly basis with a group of friends (when not subject to a quarantine)? 

Who is Ganesh? 

400
Software and procedures used to ensure the proper code is migrated through the environments  

What is version control? 

400

This key control is understandable to both business and technical people and contains conditions of satisfaction. 

What is a User Story? 

400

This is the only group with the abiliy to add/remove user entitlements to an application  

Who is Corporate Security? 
400

A Test Approach is a key control for a DBZap

What is False? 

500

In what year was SOX enacted? 

What is 2002?

500

True or False:  Of the various narratives, the necessary key controls for us can all be found in the System Development and Program Maintenance narrative  

What is False? 

500

This type of testing is a Key Control.

What is Regression? 
500

If deployment of changes to Stage and Prod is not restricted to ATS, then this must be used to log and monitor changes

What is CyberArk? 

500

For Emergency releases where SDLC steps are skipped, after the installation the team will backtrack and complete those steps

What is True? 

M
e
n
u