List of questions
Related questions
Question 277 - CISM discussion
A penetration test was conducted by an accredited third party. Which of the following should be the information security manager's FIRST course of action?
A.
Ensure a risk assessment is performed to evaluate the findings
B.
Ensure vulnerabilities found are resolved within acceptable timeframes
C.
Request funding needed to resolve the top vulnerabilities
D.
Report findings to senior management
Your answer:
0 comments
Sorted by
Leave a comment first