nerdexam
IIA

IIA-CIA-PART3 · Question #146

According to IIA guidance, which of the following would be the best first stop to manage risk when a third party is overseeing the organization's network and data?

The correct answer is B. Drafting a strong contract that requires regular vendor control reports end a right-to-audit clause. You've hit your session limit · resets 10:20pm (America/New_York)

Question

According to IIA guidance, which of the following would be the best first stop to manage risk when a third party is overseeing the organization's network and data?

Options

  • ACreating a comprehensive reporting system for vendors to demonstrate their ongoing due
  • BDrafting a strong contract that requires regular vendor control reports end a right-to-audit clause.
  • CApplying administrative privileges to ensure right to access controls are appropriate.
  • DCreating a standing cyber-security committee to identify and manage risks related to data security

How the community answered

(29 responses)
  • A
    10% (3)
  • B
    79% (23)
  • C
    7% (2)
  • D
    3% (1)

Explanation

You've hit your session limit · resets 10:20pm (America/New_York)

Community Discussion

No community discussion yet for this question.

Full IIA-CIA-PART3 Practice