Last Updated on December 21, 2021 by InfraExam
Several significant risks have been identified after a centralized risk register was compiled and prioritized. The information security manager’s most important action is to:
- provide senior management with risk treatment options.
- design and implement controls to reduce the risk.
- consult external third parties on how to treat the risk.
- ensure that employees are aware of the risk.