What is a key item that must be kept in mind when designing an enterprise-wide information security program?
Answer : B
When should information security controls be considered?
Answer : A
What is the best way to start setting the information security controls?
Answer : C
The Board of Directors of an organization is accountable for obtaining adequate assurance.
Who should be responsible for coordinating the information security awareness campaigns?
Answer : C
Recovery Time Objective (RTO) and Recovery Point Objective (RPO) are key terms in business continuity management (BCM). Reducing loss of data is one of the focus areas of a BCM policy.
What requirement is in the data recovery policy to realize minimal data loss?
Answer : B
When is revision of an employee's access rights mandatory?
Answer : D
An information security officer is asked to write a retention policy for a financial system. She is aware of the fact that some data must be kept for a long time and other data must be deleted.
Where should she look for guidelines first?
Answer : C