🔥 3-day streak
ISACA CISA — Certified Information Systems Auditor134 / 148
Question 134 of 148
During a review of a company's remote access solution, an IS auditor notes that users must enter a memorized PIN and then insert a hardware smart card that generates a one-time value to log in. Management claims this constitutes strong multifactor authentication. Which conclusion should the auditor reach regarding this control?
Reviewed for accuracy · Report an issueNext question