ISC Certified Information Systems Security Professional (CISSP) CISSP Question # 15 Topic 2 Discussion

ISC Certified Information Systems Security Professional (CISSP) CISSP Question # 15 Topic 2 Discussion

CISSP Exam Topic 2 Question 15 Discussion:
Question #: 15
Topic #: 2

When assessing an organization’s security policy according to standards established by the International Organization for Standardization (ISO) 27001 and 27002, when can management responsibilities be defined?


A.

Only when assets are clearly defined


B.

Only when standards are defined


C.

Only when controls are put in place


D.

Only procedures are defined


Get Premium CISSP Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.