A missing/ineffective security control is identified. Which of the following should be the NEXT step? A. Perform an audit to measure the control formally B. Escalate the issue to the IT organization C. Perform a risk assessment to measure risk D. Establish Key Risk Indicators Suggested Answer: C This question is in 712-50 EC-Council Certified CISO (CCISO) Exam For getting EC-Council Certified CISO (CCISO) Certificate Disclaimers: The website is not related to, affiliated with, endorsed or authorized by EC-Council. Trademarks, certification & product names are used for reference only and belong to EC-Council. The website does not contain actual questions and answers from EC-Council's Certification Exam.
Please login or Register to submit your answer