Which of the following should an information security manager do FIRST when a mandatory security standard hinders the achievement of an identified business objective?
Escalate based on the scenario - mandatory control, and the bottle kneck to objectives.
You would have done the cost benefit-analysis prior to selecting the mandatory requirements. C
C. Escalate to senior management.
Escalating the issue to senior management allows for a higher-level decision-making process. Senior management can evaluate the situation, consider the potential risks, and make an informed decision regarding whether to adjust the business objective, allocate additional resources, seek exceptions or waivers from the security standard, or take other appropriate actions. After senior management is aware of the issue and involved in the decision-making process, they may then decide to perform a cost-benefit analysis, revisit the business objective, or recommend risk acceptance if necessary.
Why would he bother with B when the hindrance is being caused by a mandated control? The question implies that the control must remain in place so how or why would you need to weigh it up?
When a mandatory security standard hinders the achievement of an identified business objective, the information security manager should first perform a cost-benefit analysis to determine the impact of the security standard on the business objective.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
aokisan
Highly Voted 2 years ago03allen
Most Recent 6 months, 2 weeks agoMarcelus1714
9 months, 1 week agomaisarajarrah
1 year agoCISSPST
1 year agorealmjmj
1 week, 6 days agoUncle_Lucifer
1 year agooluchecpoint
1 year, 3 months agoAaronS1990
1 year, 3 months agorichck102
1 year, 6 months agowello
1 year, 6 months agoSouvik124
1 year, 10 months agoBroesweelies
1 year, 11 months ago