QuestionQ145
Information Security Risk ManagementRegular vulnerability scans of an organization’s internal network have found that many user workstations are running unpatched software versions. What is the BEST way for the information security manager to help senior management understand the associated risk?
- A Include the impact of the risk as part of regular metrics.
- B Send regular notifications directly to senior managers.
- C Recommend the security steering committee conduct a review.
- D Update the risk assessment at regular intervals.
Community Discussion