nerdexam
EC-Council

512-50 · Question #153

A Chief Information Security Officer received a list of high, medium, and low impact audit findings. Which of the following represents the BEST course of action?

The correct answer is C. If the findings impact regulatory compliance, remediate the high findings as quickly as possible. See the full explanation below for the reasoning.

Question

A Chief Information Security Officer received a list of high, medium, and low impact audit findings. Which of the following represents the BEST course of action?

Options

  • AIf the findings impact regulatory compliance, try to apply remediation that will address the most
  • BIf the findings do not impact regulatory compliance, remediate only the high and medium risk
  • CIf the findings impact regulatory compliance, remediate the high findings as quickly as possible.
  • DIf the findings do not impact regulatory compliance, review current security controls.

How the community answered

(56 responses)
  • A
    11% (6)
  • B
    4% (2)
  • C
    79% (44)
  • D
    7% (4)

Community Discussion

No community discussion yet for this question.

Full 512-50 Practice