CISA Certified Information Systems Auditor – Question2630

Which of the following provides the MOST assurance that a newly developed web application does not have IT security issues?

A.
Server hardening
B. Business impact analysis (BIA)
C. Application whitelisting
D. Penetration testing

Correct Answer: D