ExamGecko
Question list
Search
Search

Question 553 - CISM discussion

Report
Export

An organization is considering the feasibility of implementing a big data solution to analyze customer data. In order to support this initiative, the information security manager should FIRST:

A.
inventory sensitive customer data to be processed by the solution.
Answers
A.
inventory sensitive customer data to be processed by the solution.
B.
determine information security resource and budget requirements.
Answers
B.
determine information security resource and budget requirements.
C.
assess potential information security risk to the organization.
Answers
C.
assess potential information security risk to the organization.
D.
develop information security requirements for the big data solution.
Answers
D.
develop information security requirements for the big data solution.
Suggested answer: C

Explanation:

Assessing potential information security risk to the organization is the first step that the information security manager should take when considering the feasibility of implementing a big data solution to analyze customer data, as it helps to identify and evaluate the threats, vulnerabilities, and impacts that may arise from the collection, processing, storage, and sharing of large volumes and varieties of customer data. Assessing risk also helps to determine the risk appetite and tolerance of the organization, and to prioritize the risk treatment options and security controls that are needed to protect the customer data and the big data solution. (From CISM Review Manual 15th Edition)

asked 01/10/2024
bijay ghimire
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first