Question 316
An IS auditor reviewing an organization's IT strategic plan should FIRST review:
Question 317
Which of the following is the MOST important factor when determining the frequency of information security risk reassessment?
Question 318
Which of the following is the MOST important reason to periodically review data that has already been classified?
Question 319
An IS auditor learns of a new regulation which imposes penalties based on the number of individuals whose personally identifiable information (PII) is exposed by a security breach. What would be the BEST recommendation to help the organization limit the liability associated with a breach to its customer information database?
Question 320
Which of the following is the BEST way to ensure that an application is performing according to its specifications?
