List of questions
Related questions
Question 570 - CISM discussion
Which of the following should an information security manager do FIRST to address the risk associated with a new third-party cloud application that will not meet organizational security requirements?
A.
Update the risk register.
B.
Consult with the business owner.
C.
Restrict application network access temporarily.
D.
Include security requirements in the contract.
Your answer:
0 comments
Sorted by
Leave a comment first