Developers currently have access to update production servers without going through an
approval process. Which of the following strategies would BEST mitigate this risk?

A.
Incident management
B.
Clean desk policy
C.
Routine audits
D.
Change management