List of questions
Related questions
Question 292 - CISM discussion
An organization faces severe fines and penalties if not in compliance with local regulatory requirements by an established deadline. Senior management has asked the information security manager to prepare an action plan to achieve compliance.
Which of the following would provide the MOST useful information for planning purposes?
A.
Results from a business impact analysis (BIA)
B.
Deadlines and penalties for noncompliance
C.
Results from a gap analysis
D.
An inventory of security controls currently in place
Your answer:
0 comments
Sorted by
Leave a comment first