List of questions
Related questions
Question 1015 - CISSP discussion
An organization is setting a security assessment scope with the goal of developing a Security Management Program (SMP). The next step is to select an approach for conducting the risk assessment. Which of the following approaches is
MOST effective for the SMP?
A.
Data driven risk assessment with a focus on data
B.
Security controls driven assessment that focuses on controls management
C.
Business processes based risk assessment with a focus on business goals
D.
Asset driven risk assessment with a focus on the assets
Your answer:
0 comments
Sorted by
Leave a comment first