An organization uses a security standard that has undergone a major revision by the certifying authority. The old version of the standard will no longer be used for organizations wishing to maintain their certifications. Which of the following should be the FIRST
course of action?
Who is accountable for ensuring proper controls are in place to address the confidentiality and availability of an information system?
Which of the following is MOST likely to reduce the effectiveness of a SIEM system?
Which of the following is the BEST indication of a mature information security program?
An organization is going through a digital transformation process, which places the IT organization in an unfamiliar risk landscape. The information security manager has been tasked with leading the IT risk management process. Which of the following should be given the HIGHEST priority?
Which of the following is the BEST course of action for an information security manager to align security and business goals?
Which of the following is the BEST approach to make strategic information security decisions?