nerdexam
EC-Council

712-50 · Question #262

Scenario: You are the CISO and have just completed your first risk assessment for your organization. You find many risks with no security controls, and some risks with inadequate controls. You…

The correct answer is B. Risk assessment. See the full explanation below for the reasoning.

Question

Scenario: You are the CISO and have just completed your first risk assessment for your organization. You find many risks with no security controls, and some risks with inadequate controls. You assign work to your staff to create or adjust existing security controls to ensure they are adequate for risk mitigation needs. When formulating the remediation plan, what is a required input?

Options

  • ABoard of directors
  • BRisk assessment
  • CPatching history
  • DLatest virus definitions file

How the community answered

(46 responses)
  • A
    2% (1)
  • B
    83% (38)
  • C
    11% (5)
  • D
    4% (2)

Community Discussion

No community discussion yet for this question.

Full 712-50 Practice