List of questions
Related questions
Question 1050 - CISA discussion
An organization's senior management thinks current security controls may be excessive and requests an IS auditor's advice on how to assess the adequacy of current measures. What is the auditor's BEST recommendation to management?
A.
Perform correlation analysis between incidents and investments.
B.
Downgrade security controls on low-risk systems.
C.
Introduce automated security monitoring tools.
D.
Re-evaluate the organization's risk and control framework.
Your answer:
0 comments
Sorted by
Leave a comment first