nerdexam
Isaca

CISM · Question #676

An organization is considering the feasibility of implementing a big data solution to analyze customer data. In order to support this initiative, the information security manager should FIRST:

The correct answer is B. assess potential information security risk to the organization.. Assessing potential information security risk is the first step to ensure that the big data initiative does not expose the organization to unacceptable threats, enabling informed decisions about controls, requirements, and resource planning.

Submitted by miguelv· Apr 18, 2026Information Security Risk Management

Question

An organization is considering the feasibility of implementing a big data solution to analyze customer data. In order to support this initiative, the information security manager should FIRST:

Options

  • Ainventory sensitive customer data to be processed by the solution.
  • Bassess potential information security risk to the organization.
  • Cdetermine information security resource and budget requirements.
  • Ddevelop information security requirements for the big data solution.

How the community answered

(23 responses)
  • A
    9% (2)
  • B
    83% (19)
  • C
    4% (1)
  • D
    4% (1)

Explanation

Assessing potential information security risk is the first step to ensure that the big data initiative does not expose the organization to unacceptable threats, enabling informed decisions about controls, requirements, and resource planning.

Topics

#Risk Assessment#Big Data Security#New Technology Adoption#Project Feasibility

Community Discussion

No community discussion yet for this question.

Full CISM Practice