Question 71

A CISO sees abnormally high volumes of exceptions to security requirements and constant pressure from business units to change security processes. Which of the following represents the MOST LIKELY cause of this situation?
  • Question 72

    Which of the following methods are used to define contractual obligations that force a vendor to meet customer expectations?
  • Question 73

    An IT auditor has recently discovered that because of a shortage of skilled operations personnel, the security administrator has agreed to work one late night shift a week as the senior computer operator. The most appropriate course of action for the IT auditor is to:
  • Question 74

    The PRIMARY objective of security awareness is to:
  • Question 75

    What is the FIRST step in developing the vulnerability management program?