List of questions
Related questions
Question 627 - CISA discussion
Which of the following should an IS auditor recommend be done FIRST when an organization is made aware of a new regulation that is likely to impact IT security requirements?
A.
Update security policies based on the new regulation.
B.
Determine which systems and IT-related processes may be impacted.
C.
Evaluate how security awareness and training content may be impacted.
D.
Review the design and effectiveness of existing IT controls.
Your answer:
0 comments
Sorted by
Leave a comment first