Which of the following processes is the FIRST step in establishing an information security policy?

Which of the following processes is the FIRST step in establishing an information security policy?
A . Review of current global standards
B . Business risk assessment
C . Security controls evaluation
D . Information security audit

Answer: B

Latest CISM Practice Questions with 1327 Q&As

Updated Study Material | Instant Download | Detailed Answers and Explanations

Subscribe
Notify of
guest
0 Comments