CISM Exam Question 56
The PRIMARY purpose for continuous monitoring of security controls is to ensure:
CISM Exam Question 57
When developing a business case to justify an information security investment, which of the following would BEST enable an informed decision by senior management?
CISM Exam Question 58
Which of the following is the BEST way to help ensure an organization's risk appetite will be considered as part of the risk treatment process?
CISM Exam Question 59
Which of the following is the BEST course of action for an information security manager to align security and business goals?
CISM Exam Question 60
Which of the following is the GREATEST benefit of including incident classification criteria within an incident response plan?