An organization is planning to open a new office in another country. Sensitive data will be routinely sent between the two offices. What should be the information security manager's FIRST course of action?
The first course of action is to identify applicable regulatory requirements (D). CISM governance requires understanding legal and regulatory obligations before defining policies, controls, or technical measures. Encryption (B), training (A), and policy updates (C) must be based on regulatory requirements to ensure compliance and avoid legal exposure. Jurisdictional risk assessment is foundational when operating across borders.
Dana
15 days agoLeonie
20 days agoGenevive
26 days agoArlette
1 month agoApolonia
1 month agoBulah
1 month agoChristene
2 months agoDalene
2 months agoCasey
2 months agoCecily
2 months agoSharika
2 months agoBo
2 months agoFrance
3 months agoToi
3 months agoIn
4 months agoSharika
4 months agoWynell
4 months agoEarleen
4 months agoMeghann
4 months ago