ECCouncil EC-Council Certified CISO (CCISO) 712-50 Question # 118 Topic 12 Discussion

ECCouncil EC-Council Certified CISO (CCISO) 712-50 Question # 118 Topic 12 Discussion

712-50 Exam Topic 12 Question 118 Discussion:
Question #: 118
Topic #: 12

SCENARIO: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used as audit baselines. The audit report was presented to the CISO and a variety of high, medium and low rated gaps were identified.

The CISO has validated audit findings, determined if compensating controls exist, and started initial remediation planning. Which of the following is the MOST logical next step?


A.

Validate the effectiveness of current controls


B.

Create detailed remediation funding and staffing plans


C.

Report the audit findings and remediation status to business stake holders


D.

Review security procedures to determine if they need modified according to findings


Get Premium 712-50 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.