Information Systems and Controls ISC Surgent Supplemental Course
-
WELCOME. PLEASE START HERE!
1. Welcome to Farhat Lectures -
2. How to Use This Course & Resources
-
3. Choosing the Right CPA Discipline
-
4. CPA Exam Study Tips & Common Questions
-
🚀Introduce Yourself1 Topic
-
🚨🚨🚨2026 AICPA Released Questions1 Topic
-
1A – Information Systems📖Introduction To Cloud Computation2 Topics
-
📖Cloud Computing Deployment, Risks and Benefits2 Topics|1 Quiz
-
📖Role and Responsibilities of Cloud Service Providers2 Topics|1 Quiz
-
📖How COSO Frameworks Address Cloud Computing Governance2 Topics|1 Quiz
-
📖Enterprise Resource Planning / ERP Architecture4 Topics|1 Quiz
-
📖IT Architectures: operating systems, servers etc.2 Topics|1 Quiz
-
📖Introduction to Accounting Information System (Business Cycles)2 Topics
-
📖Revenue Cycle2 Topics|1 Quiz
-
📖Expenditure Cycle2 Topics|1 Quiz
-
📖Payroll and H/R cycle2 Topics|1 Quiz
-
📖Manufacturing/Production Cycle2 Topics|1 Quiz
-
📖Financing, Reporting and General Ledger Cycle2 Topics
-
📖Shared Services, Outsourcing & Offshoring2 Topics|1 Quiz
-
📖Introduction to Business Resiliency2 Topics|1 Quiz
-
📖Business Resiliency Crisis Management2 Topics|1 Quiz
-
📖Business Resiliency: Disaster Recovery Plan DRP2 Topics|1 Quiz
-
📖Business Resiliency System Controls2 Topics|1 Quiz
-
📖Change Management and Process of Change Management2 Topics|1 Quiz
-
📖Risks and Mitigations to Change Management2 Topics
-
📖System Development Life Cycle (SDLC)2 Topics|1 Quiz
-
📖Waterfall and Agile Methodology2 Topics|1 Quiz
-
📖Purpose of testing change management2 Topics|1 Quiz
-
📖Software System Testing2 Topics|1 Quiz
-
🎯AICPA Questions: Business Continuity Plan1 Quiz
-
🚨🚨HOW TO SOLVE SIMULATIONS (TUTORIAL + VIDEO EXAMPLES)✅ ISC CPA Exam Simulation Tutorial + 2024 and 2025 AICPA Video Questions. Surgent5 Topics|2 Quizzes
-
1B – Data Management📖Data Life Cycle2 Topics|1 Quiz
-
📖Database Systems2 Topics|1 Quiz
-
📖Flat Files Versus Structured Data2 Topics|1 Quiz
-
📖Business Intelligence Tools for Databases2 Topics|1 Quiz
-
📖Primary and Foreign Key3 Topics|1 Quiz
-
📖Data Normalization8 Topics|1 Quiz
-
📖Data Definition Language: Create & Alter2 Topics
-
📖Data Definition Language: Drop, Truncate & Rename2 Topics
-
📖Data Manipulation Language: Insert, Update & Delete2 Topics
-
📖Data Control Language: Grant & revoke2 Topics
-
📖Transaction Control Language: Commit Rollback & Save Point2 Topics|1 Quiz
-
📖1 to 1 and 1 to Many and Many to Many6 Topics|1 Quiz
-
✏️+🎥One-to-One Relationships in SQL Databases + PPT Slides🟢
-
🎙️1 to 1 Relationship in SQL Database
-
✏️+🎥1 to Many Relationship in SQL Database + PPT Slides🟢
-
🎙️1 to Many Relationship in SQL Database
-
✏️+🎥Many-to-Many Relationships in SQL Databases + PPT Slides🟢
-
🎙️Many to Many Relationship in SQL Database
-
✏️+🎥One-to-One Relationships in SQL Databases + PPT Slides🟢
-
📖Business Process Modeling Notation2 Topics
-
2A – Regulations, Standards, and Frameworks📖NIST Cybersecurity Framework: Govern Function 12 Topics|1 Quiz
-
📖NIST Cybersecurity Framework Identify Function 22 Topics|1 Quiz
-
📖NIST Cybersecurity Framework: Protect Function 32 Topics|1 Quiz
-
📖NIST Cybersecurity Framework: Detect Function 42 Topics|1 Quiz
-
📖NIST Cybersecurity Framework Respond Function 52 Topics|1 Quiz
-
📖NIST Cybersecurity Framework Recover Function 62 Topics|1 Quiz
-
📖NIST Cybersecurity Framework Profile2 Topics|1 Quiz
-
📖NIST: 4 Tiers2 Topics|1 Quiz
-
📖NIST Privacy Framework2 Topics|1 Quiz
-
📖NIST SP 800-532 Topics|1 Quiz
-
📖Intro To Data Privacy Laws & Data Breaches4 Topics|1 Quiz
-
📖Health Insurance Portability & Accountability Act (HIPPA)2 Topics|1 Quiz
-
📖GDPR2 Topics|1 Quiz
-
📖PCIDSS2 Topics|1 Quiz
-
📖Intro to Center for Internet Security and Implementation Groups 1, 2 and 34 Topics|1 Quiz
-
📖Center For internet Security (CIS) 1 To 96 Topics|1 Quiz
-
📖CIS Controls 10 To 122 Topics
-
📖CIS Controls 13 to 152 Topics
-
📖CIS Controls 16 to 182 Topics
-
📖The 6 principles of COBIT2 Topics
-
📖COBIT 7 Information Criteria2 Topics|2 Quizzes
-
2B: Security, Confidentiality, and Privacy: 2B1: Threats & Attacks📖Cyber Security2 Topics|1 Quiz
-
📖Threat Actors2 Topics|1 Quiz
-
📖Network Based Attacks2 Topics|1 Quiz
-
📖Host Based Attacked2 Topics|1 Quiz
-
📖Malware Attacks2 Topics|1 Quiz
-
📖Social Engineering Attacks2 Topics|1 Quiz
-
📖Application Based Attacks2 Topics|1 Quiz
-
📖Phishing Attacks2 Topics|1 Quiz
-
📖Physical Attacks2 Topics|1 Quiz
-
📖Supply Chain Attacks2 Topics|1 Quiz
-
📖Stages Of Cyber Attacks2 Topics|1 Quiz
-
📖Risks Related To Cloud Computing2 Topics|1 Quiz
-
📖Risks Related To Mobile Technology2 Topics|1 Quiz
-
📖Risks Related To Internet Of Things2 Topics|1 Quiz
-
📖Threat Modeling2 Topics|1 Quiz
-
2B: Security, Confidentiality, and Privacy: 2B2 : Mitigation📖COSO and Cybersecurity2 Topics|1 Quiz
-
📖ERM: Cybersecurity2 Topics
-
📖Security Policies (Cybersecurity)2 Topics|1 Quiz
-
📖Security Policies: Acceptable Use Policies2 Topics|1 Quiz
-
📖Bring Your Own Device Policies2 Topics|1 Quiz
-
📖Network Components2 Topics|1 Quiz
-
📖Network Security2 Topics|1 Quiz
-
📖Authorization & Authentication2 Topics|1 Quiz
-
📖Identification & Authentication2 Topics|1 Quiz
-
📖Vulnerability Management2 Topics|1 Quiz
-
📖Vulnerability Scanning2 Topics|1 Quiz
-
📖Defense In Depth2 Topics
-
📖Redundancy & Diversification2 Topics
-
📖Preventive Controls2 Topics
-
📖Access Controls2 Topics|1 Quiz
-
📖Detective Controls2 Topics|1 Quiz
-
📖Corrective Controls2 Topics|1 Quiz
-
2B: Security, Confidentiality, and Privacy: 2B3 : Testing📖Risk Management Framework2 Topics
-
📖Security Assessment Reports2 Topics|1 Quiz
-
📖Security Assessment Evaluators, Process & Evidence2 Topics|1 Quiz
-
📖Security Awareness2 Topics|1 Quiz
-
📖Evaluating Security Awareness2 Topics|1 Quiz
-
2C – Confidentiality and Privacy📖Confidentiality and Privacy2 Topics|1 Quiz
-
📖Protecting Confidential Data2 Topics|1 Quiz
-
📖Data Obfuscation SDLC2 Topics|1 Quiz
-
📖Data Encryption2 Topics
-
📖Hashing and Cipher Techniques2 Topics
-
📖Data Loss Prevention2 Topics|1 Quiz
-
📖Data At Rest & Data Deletion2 Topics
-
📖Walkthrough Of Org. Security, Confidentiality & Privacy2 Topics|1 Quiz
-
📖SOC 2 Engagement2 Topics|1 Quiz
-
2D – Incident Response📖Incident Respond Plan2 Topics|1 Quiz
-
📖Incident Response Plan (IRP): People2 Topics|1 Quiz
-
📖Events & Incidents2 Topics
-
📖7 Steps Responding To An Incident2 Topics|1 Quiz
-
📖Test IRP2 Topics|1 Quiz
-
📖Cyber Insurance2 Topics|1 Quiz
-
3A – Considerations Specific to Planning and Performing a SOC Engagement📖SOC 1, 2 and 32 Topics
-
📖Type 1 & Type 2 Opinion2 Topics|1 Quiz
-
📖Trust Service Criteria2 Topics
-
📖Attestation Engagements ISC2 Topics
-
📖COSO and TSC2 Topics|1 Quiz
-
📖TSC Additional Criteria2 Topics|1 Quiz
-
📖SOC Engagement: Response to the Assessed Level of Risk2 Topics|1 Quiz
-
📖SOC Description 12 Topics|1 Quiz
-
📖SOC Description 22 Topics|1 Quiz
-
📖Control Design2 Topics
-
📖Test of Effectiveness2 Topics
-
📖Evaluate the Procedures2 Topics|1 Quiz
-
📖Subsequent Events in a SOC Engagement2 Topics|1 Quiz
-
📖Representation Letter (SOC Engagement)2 Topics|1 Quiz
-
📖SOC 1 & 2 :Management Responsibilities2 Topics
-
📖SOC 2 Management Responsibilities2 Topics|1 Quiz
-
📖Service Auditor’s Responsibilities2 Topics|1 Quiz
-
📖Independence & SOC Engagement2 Topics|1 Quiz
-
📖Materiality in SOC Engagement2 Topics|1 Quiz
-
📖System Requirements2 Topics
-
📖Service Commitments2 Topics|1 Quiz
-
📖SOC Risk Assessment2 Topics|1 Quiz
-
3B – Considerations Specific to Reporting on a SOC Engagement📖Unqualified Opinion2 Topics
-
📖Types of Opinion in a SOC Engagement2 Topics|1 Quiz
-
📖Description Of SOC 12 Topics|1 Quiz
-
📖Description Of SOC 22 Topics|1 Quiz
-
📖Description Of Cybersecurity2 Topics
-
📖Management Assertions In A SOC Engagement2 Topics|1 Quiz
-
📖SOC 1 Type 1 Report2 Topics
-
📖SOC 1 Type 2 Report2 Topics
-
📖SOC 2 Type 2 Report2 Topics
-
📖Carve-Out & Include Method2 Topics|1 Quiz
-
📖CUECs2 Topics|1 Quiz
-
📖SOC Reports: Complementary Subservice & User Controls2 Topics
-
📖SOC Reports: Qualified Or Adverse2 Topics
-
📖SOC Reports: Qualified Or Disclaimer2 Topics
Participants 2343
Instructions on how to complete the quiz
- Click on “Start Quiz” to start.
- “Check” to submit your answer and reveal the solution.
- “Skip Question” to skip the question for now.
- “Review” to mark question for review later.
- “Feedback” to inquire about the question or provide us your feedback.
- Please make sure to reference the number of the question in your inquiry such as # 4
- Quiz Summary” to finish/submit the whole quiz
Quiz Summary
0 of 5 Questions completed
Questions:
Information
You have already completed the quiz before. Hence you can not start it again.
Quiz is loading…
You must sign in or sign up to start the quiz.
You must first complete the following:
Results
Results
0 of 5 Questions answered correctly
Your time:
Time has elapsed
You have reached 0 of 0 point(s), (0)
Earned Point(s): 0 of 0, (0)
0 Essay(s) Pending (Possible Point(s): 0)
| Average score |
|
| Your score |
|
Categories
- Not categorized 0%
- Review / Skip
- Answered
- Correct
- Incorrect
-
Question 1 of 5
1. Question
BlueSky Financial has successfully restored its core banking systems from backup after a ransomware incident. According to the Incident Recovery Plan Execution (RC.RP) under the NIST Cybersecurity Framework, what should the organization’s next step be?
CorrectIncorrect -
Question 2 of 5
2. Question
MedicaPlus experienced a cybersecurity breach that compromised patient records. Under the Incident Recovery Communication (RC.CO) category of the NIST Cybersecurity Framework, what is the most appropriate communication approach for the organization?
CorrectIncorrect -
Question 3 of 5
3. Question
After a cyber attack, Apex Manufacturing executes its recovery plan, restoring operations partially from secure backups. Within the Incident Recovery Plan Execution (RC.RP), what critical factor should guide the order in which business functions are restored?
CorrectIncorrect -
Question 4 of 5
4. Question
Innovatech recently mitigated a phishing attack that disrupted internal communications. Considering the Incident Recovery Communication (RC.CO) aspect of the NIST Cybersecurity Framework, which action best demonstrates compliance with effective recovery communication?
CorrectIncorrect -
Question 5 of 5
5. Question
GreenView Corporation has just restored its operations after recovering from a cybersecurity incident that affected its customer portal. What action aligns best with Incident Recovery Plan Execution (RC.RP) principles to ensure effective recovery?
CorrectIncorrect
Responses