An organization learns that a third party has outsourced critical functions to another external provider. Which of the following is the information security manager's MOST important course of action?
A.
Engage an independent audit of the third party's external provider.
B.
Conduct an external audit of the contracted third party.
C.
Recommend canceling the contract with the third party.
D.
Evaluate the third party's agreements with its external provider.
D - This evaluation ensures that the necessary security controls and safeguards are in place to mitigate risks associated with outsourcing.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
ServerBrain
3 weeks, 6 days agoBooict
4 months ago