To gain a clear understanding of the impact that a new regulatory requirement will have on an organization’s information security controls, an information security manager should FIRST:

Posted by: Pdfprep Category: CISA Tags: , ,

To gain a clear understanding of the impact that a new regulatory requirement will have on an organization’s information security controls, an information security manager should FIRST:
A . conduct a risk assessment.
B . perform a gap analysis.
C . conduct a cost-benefit analysis.
D . interview senior management.

Answer: B

Leave a Reply

Your email address will not be published.