List of questions
Related questions
Question 627 - CISM discussion
A newly appointed information security manager has been asked to update all security-related policies and procedures that have been static for five years or more. What should be done NEXT?
A.
Gain an understanding of the current business direction.
B.
Perform a risk assessment of the current IT environment.
C.
Inventory and review current security policies.
D.
Update in accordance with the best business practices.
Your answer:
0 comments
Sorted by
Leave a comment first