ECCouncil EC-Council Information Security Manager (E|ISM) 512-50 Question # 108 Topic 11 Discussion

ECCouncil EC-Council Information Security Manager (E|ISM) 512-50 Question # 108 Topic 11 Discussion

512-50 Exam Topic 11 Question 108 Discussion:
Question #: 108
Topic #: 11

Scenario: An organization has made a decision to address Information Security formally and consistently by adopting established best practices and industry standards. The organization is a small retail merchant but it is expected to grow to a global customer base of many millions of customers in just a few years.

Which of the following would be the FIRST step when addressing Information Security formally and consistently in this organization?


A.

Contract a third party to perform a security risk assessment


B.

Define formal roles and responsibilities for Internal audit functions


C.

Define formal roles and responsibilities for Information Security


D.

Create an executive security steering committee


Get Premium 512-50 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.