To effectively manage an organization’s information security risk, it is MOST important to: A. establish and communicate risk tolerance. B. benchmark risk scenarios against peer organizations. C. assign risk management responsibility to an experienced consultant. D. periodically identify and correct new systems vulnerabilities. Suggested Answer: A This question is in CISM exam For getting Certified Information Security Manager Certificate Disclaimers: The website is not related to, affiliated with, endorsed or authorized by ISACA. The website does not contain actual questions and answers from ISACA's Certification Exams. Trademarks, certification & product names are used for reference only and belong to ISACA.
Please login or Register to submit your answer