A penetration test was conducted by an accredited third party. Which of the following should be the information security manager's FIRST course of action?
A.
Ensure a risk assessment is performed to evaluate the findings
B.
Ensure vulnerabilities found are resolved within acceptable timeframes
C.
Request funding needed to resolve the top vulnerabilities
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit