If the investigation of an incident is not completed within the time allocated in the incident response plan, which of the following actions should be taken by the incident response team?
Which of the following should be an information security manager's FIRST course of action when a potential business breach is discovered in a critical business system?
Which of the following is the MOST important criterion when deciding whether to accept residual risk?
Which of the following is the MOST important consideration when defining control objectives?