Question 316

An IS auditor reviewing an organization's IT strategic plan should FIRST review:
  • Question 317

    Which of the following is the MOST important factor when determining the frequency of information security risk reassessment?
  • Question 318

    Which of the following is the MOST important reason to periodically review data that has already been classified?
  • Question 319

    An IS auditor learns of a new regulation which imposes penalties based on the number of individuals whose personally identifiable information (PII) is exposed by a security breach. What would be the BEST recommendation to help the organization limit the liability associated with a breach to its customer information database?
  • Question 320

    Which of the following is the BEST way to ensure that an application is performing according to its specifications?