ISC Exam Questions

When should security first be addressed in a project?

When should security first be addressed in a project?

A.
During requirements development

B.
During integration testing

C.
During design specifications

D.
During implementation

Explanation:
A: The trick to this question, and any one like it, is that security should be implemented at the first possible phase of a project. Requirements are gathered and developed at the beginning of a project, which is project initiation. The other answers are steps that follow this phase, and security should be integrated right off the bat instead of in the middle or at the end.