ISC2 CISSP Exam - Topic 2 Question 58 Discussion
Information Security Continuous Monitoring (1SCM) is defined as maintaining ongoing awareness of information security, vulnerabilities, and threats to support organizational risk managementdecisions. Which of the following is the FIRST step in developing an ISCM strategy and implementing an ISCM program?
A) Define a strategy based on risk tolerance that maintains clear visibility into assets, awareness of vulnerabilities, up-to-date threat information, and mission/business impacts.
B) Conduct a vulnerability assessment to discover current threats against the environment and incorporate them into the program.
C) Respond to findings with technical management, and operational mitigating activities or acceptance, transference/sharing, or avoidance/rejection.
D) Analyze the data collected and report findings, determining the appropriate response. It may be necessary to collect additional information to clarify or supplement existing monitoring data.
Sylvie
8 months agoLauran
8 months agoTammara
9 months agoNenita
9 months agoTheresia
9 months agoCammy
9 months agoTeresita
9 months agoBrent
9 months agoNorah
9 months agoAlona
9 months agoShannon
9 months agoAndrew
10 months agoMabel
10 months ago