ExamQuestions.com

Register
Login
Certified Information Security Manager Exam Questions

Isaca

Certified Information Security Manager

249 / 500

Question 249:

An organization has to comply with recently published industry regulatory requirements " compliance that potentially has high implementation costs. What should the information security manager do FIRST? 

Answer options:

A. Implement a security committee.
B. Perform a gap analysis.
C. Implement compensating controls.
D. Demand immediate compliance.