Câu 128: 712-50: EC-Council Certified CISO
Scenario: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used as audit baselines. The audit report was presented to the CISO and a variety of high, medium and low rated gaps were identified. The CISO ha…
Nội dung câu hỏi
Scenario: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used as audit baselines. The audit report was presented to the CISO and a variety of high, medium and low rated gaps were identified. The CISO has validated audit findings, determined if compensating controls exist, and started initial remediation planning. Which of the following is the MOST logical next step?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Create detailed remediation funding and staffing plans
- B. Report the audit findings and remediation status to business stake holders — đáp án hiện tại
- C. Validate the effectiveness of current controls
- D. Review security procedures to determine if they need modified according to findings
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.