Which of the following should be evaluated FIRST?

A multinational organization is introducing a security governance framework. The information security manager’s concern is that regional security practices differ.

Which of the following should be evaluated FIRST?
A . Local regulatory requirements
B . Local IT requirements
C . Cross-border data mobility
D . Corporate security objectives

Answer: A

Latest CISA Practice Questions with 2694 Q&As

Updated Study Material | Instant Download | Detailed Answers and Explanations

Subscribe
Notify of
guest
0 Comments