List of questions
Related questions
Question 538 - CISM discussion
An organization recently updated and published its information security policy and standards. What should the information security manager do NEXT?
A.
Conduct a risk assessment.
B.
Communicate the changes to stakeholders.
C.
Update the organization's risk register.
D.
Develop a policy exception process.
Your answer:
0 comments
Sorted by
Leave a comment first