Question 71
When measuring the effectiveness of an Information Security Management System which one of the following would be MOST LIKELY used as a metric framework?
Question 72
Which of the following is MOST likely to be discretionary?
Question 73
Which of the following is the MAIN reason to follow a formal risk management process in an organization that hosts and uses privately identifiable information (PII) as part of their business models and processes?
Question 74
Many times a CISO may have to speak to the Board of Directors (BOD) about their cyber security posture.
What would be the BEST choice of security metrics to present to the BOD?
Question 75
During the course of a risk analysis your IT auditor identified threats and potential impacts. Next, your IT auditor should: