APMG-International Related Exams
ISO-IEC-27001-Foundation Exam
Which of the following is required to be considered when selecting appropriate information security risk treatment options?
Identify the missing word(s) in the following sentence.
When planning the ISMS, the organization is specifically required to plan actions to address risks and opportunities and how to [ ? ] these actions.
Which activity is a required element of information security risk identification?