Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Isaca Certified in Risk and Information Systems Control CRISC Question # 553 Topic 56 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 553 Topic 56 Discussion

CRISC Exam Topic 56 Question 553 Discussion:
Question #: 553
Topic #: 56

While conducting an organization-wide risk assessment, it is noted that many of the information security policies have not changed in the past three years. The BEST course of action is to:


A.

review and update the policies to align with industry standards.


B.

determine that the policies should be updated annually.


C.

report that the policies are adequate and do not need to be updated frequently.


D.

review the policies against current needs to determine adequacy.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.