List of questions
Related questions
Question 90 - CISM discussion
Which of the following is the BEST approach for governing noncompliance with security requirements?
A.
Base mandatory review and exception approvals on residual risk,
B.
Require users to acknowledge the acceptable use policy.
C.
Require the steering committee to review exception requests.
D.
Base mandatory review and exception approvals on inherent risk.
Your answer:
0 comments
Sorted by
Leave a comment first