🔥 3-day streak
ISACA CRISC — Certified in Risk and Information Systems Control4 / 150
Question 4 of 150
A newly appointed CRISC-certified risk practitioner reviews the information security department's annual goals. The goals emphasize maximizing the number of vulnerabilities patched and increasing firewall rule counts, but make no reference to the enterprise's stated strategic objective of expanding into new digital markets. Which action should the practitioner recommend FIRST to improve governance?
Reviewed for accuracy · Report an issueNext question