List of questions
Related questions
Question 258 - CISM discussion
Which of the following should an information security manager do FIRST when a mandatory security standard hinders the achievement of an identified business objective?
A.
Revisit the business objective.
B.
Escalate to senior management.
C.
Perform a cost-benefit analysis.
D.
Recommend risk acceptance.
Your answer:
0 comments
Sorted by
Leave a comment first