Isaca Certified Information Security Manager CISM Question # 245 Topic 25 Discussion

Isaca Certified Information Security Manager CISM Question # 245 Topic 25 Discussion

CISM Exam Topic 25 Question 245 Discussion:
Question #: 245
Topic #: 25

Management would like to understand the risk associated with engaging an Infrastructure-as-a-Service (laaS) provider compared to hosting internally. Which of the following would provide the BEST method of comparing risk scenarios?


A.

Mapping risk scenarios according to sensitivity of data


B.

Reviewing mitigating and compensating controls for each risk scenario


C.

Mapping the risk scenarios by likelihood and impact on a chart


D.

Performing a risk assessment on the laaS provider


Get Premium CISM Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.