Which of the following should be done FIRST when creating a data protection program?
A security review focused on data loss prevention (DLP) revealed the organization has no visibility to data stored in the cloud. What is the IS auditor's BEST recommendation to address this
issue?
Which of the following is the BEST indication that an information security awareness program is effective?
Which of the following is the MOST likely root cause of shadow IT in an organization?