hiexam
isaca · CISM · Q426 · multiple_choice · topic_1

Which of the following would BEST enable effective decision-making?

Which of the following would BEST enable effective decision-making?
  • A.Annualized loss estimates determined from past security events
  • B.A universally applied list of generic threats, impacts, and vulnerabilities
  • C.A consistent process to analyze new and historical information risk
  • D.Formalized acceptance of risk analysis by business management
Explanation
It's a matter of wording. In order to conduct a consistent process of analyzing new/historical risk info there should first be a formalized acceptance of risk analysis conducted by the business mgt team. Once this is established, than there should be a consistent review, just my thoughts.

Reference: examtopics_top_comment

Practice with progress tracking

Sign in to track wrong answers, get spaced-repetition reminders, and run timed exam mode.