PrepAway - Latest Free Exam Questions & Answers

Acceptable levels of information security risk should be determined by:

Acceptable levels of information security risk should be determined by:

PrepAway - Latest Free Exam Questions & Answers

A.
legal counsel.

B.
security management.

C.
external auditors.

D.
die steering committee.

Explanation:

Senior management, represented in the steering committee, has ultimate responsibility for
determining what levels of risk the organization is willing to assume. Legal counsel, the external
auditors and security management are not in a position to make such a decision.

One Comment on “Acceptable levels of information security risk should be determined by:

  1. John says:

    Understand that the correct answer here is “steering committee” — but what is a “die steering committee”? I’m thinking this is a type – and should have been just “steering committee” or possibly “the steering committee”.




    0



    0

Leave a Reply