Isaca Certified in Risk and Information Systems Control CRISC Question # 310 Topic 32 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 310 Topic 32 Discussion

CRISC Exam Topic 32 Question 310 Discussion:
Question #: 310
Topic #: 32

Which of the following should be determined FIRST when a new security vulnerability is made public?


A.

Whether the affected technology is used within the organization


B.

Whether the affected technology is Internet-facing


C.

What mitigating controls are currently in place


D.

How pervasive the vulnerability is within the organization


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.