QuestionQ594

Information Security Risk Management

An organization is acquiring a new company. Which of the following is the BEST approach for determining how to protect newly acquired data assets before integration?

  • A Review data architecture.
  • B Include security requirements in the contract.
  • C Perform a risk assessment.
  • D Assess security controls.
Explanation

A risk assessment identifies threats and vulnerabilities affecting organizational assets, evaluates likelihood and impact, and informs the selection of safeguards needed to reduce risk. This establishes the appropriate protection requirements for acquired data before it is integrated.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!