Which of the following mechanisms should a practitioner focus on for the MOST effective information security continuous monitoring?
Implementing automated methods for data collection and reporting where possible
Updating security plans, security assessment reports, hardware, and software inventories
Defining specific methods for monitoring that will maintain or improve security posture
Collecting risk metrics from teams, such as business, testing, QA, development, and operations with security controls
Submit