The CA Hub

CAF-3 · Chapter 16 · Question 11 of 15

Before designing or purchasing any new IT controls, the Chief Information Security Officer (CISO) conducts a thorough review to identify the organization's most critical data assets and their specific vulnerabilities. Which step of the ITGC implementation process is this?

Test yourself: pick an answer

Reveal answer & explanation

Correct answer: B) Risk Assessment

Explanation

The first step in implementing ITGCs is Risk Assessment, where an organization identifies its critical assets, evaluates potential threats, and determines the vulnerabilities that need to be addressed

All 15 questions in Chapter 16The 5 Key Components of ITGCs (Application Scenarios) MCQs with answers

More The 5 Key Components of ITGCs (Application Scenarios) MCQs

Sponsored slot availableRun a CA academy or hiring firm? Put your name in front of students preparing for this exam.Advertise →