Isaca Certified Information Security Manager CISM Question # 126 Topic 13 Discussion

Isaca Certified Information Security Manager CISM Question # 126 Topic 13 Discussion

CISM Exam Topic 13 Question 126 Discussion:
Question #: 126
Topic #: 13

An organization is MOST likely to accept the risk of noncompliance with a new regulatory requirement when:


A.

employees are resistant to the controls required by the new regulation.


B.

the regulatory requirement conflicts with business requirements.


C.

the risk of noncompliance exceeds the organization's risk appetite.


D.

the cost of complying with the regulation exceeds the potential penalties.


Get Premium CISM Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.