During an audit of an organization's risk management practices, an IS auditor finds several documented IT risk acceptances have not been renewed in a timely manner after the assigned expiration date. When assessing the severity of this finding, which mitigating factor would MOST significantly minimize the associated impact?
pLulu
3 months, 3 weeks agoRS66
8 months agoa84n
10 months, 2 weeks agoJag127
2 years, 1 month ago