Which of the following is the MOST relevant information to include in an information security risk report to facilitate senior management's understanding of impact to the organization? A. Detailed assessment of the security risk profile B. Risks inherent in new security technologies C. Findings from recent penetration testing D. Status of identified key security risks  Suggested Answer: C This question is in CISM exam For getting Certified Information Security Manager Certificate Disclaimers: The website is not related to, affiliated with, endorsed or authorized by ISACA. The website does not contain actual questions and answers from ISACA's Certification Exams. Trademarks, certification & product names are used for reference only and belong to ISACA.
Please login or Register to submit your answer