nerdexam
EC-Council

512-50 · Question #112

A missing/ineffective security control is identified. Which of the following should be the NEXT step?

The correct answer is C. Perform a risk assessment to measure risk. See the full explanation below for the reasoning.

Question

A missing/ineffective security control is identified. Which of the following should be the NEXT step?

Options

  • APerform an audit to measure the control formally
  • BEscalate the issue to the IT organization
  • CPerform a risk assessment to measure risk
  • DEstablish Key Risk Indicators

How the community answered

(31 responses)
  • A
    10% (3)
  • B
    3% (1)
  • C
    84% (26)
  • D
    3% (1)

Community Discussion

No community discussion yet for this question.

Full 512-50 Practice