List of questions
Related questions
Question 170 - CISA discussion
An IS auditor concludes that an organization has a quality security policy. Which of the following is MOST important to determine next? The policy must be:
A.
well understood by all employees.
B.
based on industry standards.
C.
developed by process owners.
D.
updated frequently.
Your answer:
0 comments
Sorted by
Leave a comment first