When developing an information security governance framework, which of the following should be the FIRST activity?

Posted by: Pdfprep Category: CISM Tags: , ,

When developing an information security governance framework, which of the following should be the FIRST activity?
A . Integrate security within the system’s development life-cycle process.
B . Align the information security program with the organization’s other risk and control activities.
C . Develop policies and procedures to support the framework.
D . Develop response measures to detect and ensure the closure of security breaches.

Answer: B

Leave a Reply

Your email address will not be published.