EC-Council
712-50 · Question #262
Scenario: You are the CISO and have just completed your first risk assessment for your organization. You find many risks with no security controls, and some risks with inadequate controls. You…
The correct answer is B. Risk assessment. See the full explanation below for the reasoning.
Question
Scenario: You are the CISO and have just completed your first risk assessment for your organization. You find many risks with no security controls, and some risks with inadequate controls. You assign work to your staff to create or adjust existing security controls to ensure they are adequate for risk mitigation needs. When formulating the remediation plan, what is a required input?
Options
- ABoard of directors
- BRisk assessment
- CPatching history
- DLatest virus definitions file
How the community answered
(46 responses)- A2% (1)
- B83% (38)
- C11% (5)
- D4% (2)
Community Discussion
No community discussion yet for this question.