D - Risk assessment is fundamental to understanding and managing security risks. It involves identifying threats, vulnerabilities, and potential impacts. By assessing risks, organizations can prioritize security efforts effectively. A is important too, BUT control design guidance builds upon risk assessment. Without understanding risks, effective controls cannot be established.
D. Information security risk assessment. While guidance for designing controls (Option A), the organizational structure of the security team (Option B), and industry benchmarks (Option C) are valuable, they are secondary to the foundational role played by risk assessment in shaping and directing the framework.
Then provide the correct answer if you know! Your comment is not helping anyone!
upvoted 4 times
...
...
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Raj91188
1 month, 3 weeks agoBooict
3 months, 4 weeks agohelg420
6 months agossdny
8 months agojcisco123
9 months, 3 weeks agoAlexJacobson
9 months, 2 weeks agojcisco123
9 months ago