CISM Exam QuestionsBrowse all questions from this exam

CISM Exam - Question 740


An information security manager learns of a new standard related to an emerging technology the organization wants to implement. Which of the following should the information security manager recommend be done FIRST?

Show Answer
Correct Answer: A

When dealing with the implementation of a new technology, it is critical to first perform a risk assessment. This helps identify potential risks and vulnerabilities associated with the new technology, and understand how it might impact the organization's security posture. By conducting a risk assessment first, the organization can make an informed decision on whether to proceed with implementing the technology, and develop appropriate controls and mitigation strategies.

Discussion

5 comments
Sign in to comment
karanvpOption: A
Jun 25, 2023

As Organization want's to implement the new technology, B, C, D may not be correct option. A would be correct.

richck102Option: C
Jul 7, 2023

C. Determine whether the organization can benefit from adopting the new standard.

SoleandheelOption: C
Nov 24, 2023

C. Determine whether the organization can benefit from adopting the new standard. The question is focused on adopting the new standard. A. is not the correct answer. C is.

Abbey2Option: D
Feb 11, 2024

How do you cetermine that the organisation can benefit from adopting the new standard = by performing risk assessments.

03allenOption: C
Jul 1, 2024

I believe that to understand the value first and then assess the risk once decide to adopt it.