A security manager has created a risk program. Which of the following is a critical part of ensuring the program is successful?
Providing a risk program governance structure
Ensuring developers include risk control comments in code
Creating risk assessment templates based on specific threats
Allowing for the acceptance of risk for regulatory compliance requirements
Submit