Business objectives and organizational risk appetite are MOST useful inputs to the development of information security:
strategy.
risk assessments.
key performance indicators (KPIs).
standards.
Submit