EC-Council
512-50 · Question #296
SCENARIO: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used as audit baselines…
The correct answer is A. Begin initial gap remediation analyses. See the full explanation below for the reasoning.
Question
SCENARIO: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used as audit baselines. The audit report was presented to the CISO and a variety of high, medium and low rated gaps were identified. After determining the audit findings are accurate, which of the following is the MOST logical next activity?
Options
- ABegin initial gap remediation analyses
- BReview the security organization's charter
- CValidate gaps with the Information Technology team
- DCreate a briefing of the findings for executive management
How the community answered
(49 responses)- A76% (37)
- B4% (2)
- C14% (7)
- D6% (3)
Community Discussion
No community discussion yet for this question.