CISM Exam Question 386

When the inherent risk of a business activity is lower than the acceptable risk level, the BEST course of action would be to:
  • CISM Exam Question 387

    An organization has fallen victim to a spear-phishing attack that compromised the multi-factor authentication code. What is the information security manager's MOST important follow-up action?
  • CISM Exam Question 388

    Which of the following should be done FIRST when establishing security measures for personal data stored and processed on a human resources....system?
  • CISM Exam Question 389

    Which type of test is MOST effective in communicating the roles of end users to support timely identification and response to information security incidents?
  • CISM Exam Question 390

    Which of the following is the MOST effective way to mitigate the risk of confidential data leakage to unauthorized stakeholders?