Last Updated on December 21, 2021 by InfraExam
An information security manager has recently been notified of potential security risks associated with a third-party service provider. What should be done NEXT to address this concern?
- Conduct a risk analysis
- Escalate to the chief risk officer
- Conduct a vulnerability analysis
- Determine compensating controls