Question 66
Within an organization's vulnerability management program, who has the responsibility to implement remediation actions?
Question 67
Scenario: As you begin to develop the program for your organization, you assess the corporate culture and determine that there is a pervasive opinion that the security program only slows things down and limits the performance of the "real workers."
Which group of people should be consulted when developing your security program?
Question 68
A business unit within your organization intends to deploy a new technology in a manner that places it in violation of existing information security standards.
What immediate action should the information security manager take?
Question 69
In accordance with best practices and international standards, how often is security awareness training provided to employees of an organization?
Question 70
Which of the following is the MAIN reason to follow a formal risk management process in an organization that hosts and uses privately identifiable information (PII) as part of their business models and processes?
