Câu 126: Isaca Certified in Risk and Information Systems Control
An assessment of information security controls has identified ineffective controls. Which of the following should be the risk practitioner's FIRST course of action?
Nội dung câu hỏi
An assessment of information security controls has identified ineffective controls. Which of the following should be the risk practitioner's FIRST course of action?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Deploy a compensating control to address the identified deficiencies
- B. Report the ineffective control for inclusion in the next audit report
- C. Determine if the impact is outside the risk appetite — đáp án hiện tại
- D. Request a formal acceptance of risk from senior management
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.