Question 71
A CISO sees abnormally high volumes of exceptions to security requirements and constant pressure from business units to change security processes. Which of the following represents the MOST LIKELY cause of this situation?
Question 72
Which of the following methods are used to define contractual obligations that force a vendor to meet customer expectations?
Question 73
An IT auditor has recently discovered that because of a shortage of skilled operations personnel, the security administrator has agreed to work one late night shift a week as the senior computer operator. The most appropriate course of action for the IT auditor is to:
Question 74
The PRIMARY objective of security awareness is to:
Question 75
What is the FIRST step in developing the vulnerability management program?
