QuestionQ481
Information Security Risk ManagementIn an organization operating in a rapidly changing environment, business management has accepted an information security risk. It is MOST important for the information security manager to ensure:
- A change activities are documented.
- B compliance with the risk acceptance framework.
- C the rationale for acceptance is periodically reviewed.
- D the acceptance is aligned with business strategy.
Community Discussion