Question 141

The effectiveness of an audit is measured by?
  • Question 142

    The remediation of a specific audit finding is deemed too expensive and will not be implemented.
    Which of the following is a TRUE statement?
  • Question 143

    As the CISO you need to write the IT security strategic plan.
    Which of the following is the MOST important to review before you start writing the plan?
  • Question 144

    An audit was conducted and many critical applications were found to have no disaster recovery plans in place.
    You conduct a Business Impact Analysis (BIA) to determine impact to the company for each application.
    What should be the NEXT step?
  • Question 145

    Risk appetite is typically determined by which of the following organizational functions?