Valid CGEIT Dumps shared by ExamDiscuss.com for Helping Passing CGEIT Exam! ExamDiscuss.com now offer the newest CGEIT exam dumps, the ExamDiscuss.com CGEIT exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com CGEIT dumps with Test Engine here:
An IT strategy committee has reviewed an audit report indicating sales employees are using personal smartphones to conduct corporate business. Although the committee appreciates the business benefits, it is also concerned with the security risk. To deliver the business benefit, what should be the committee's FIRST recommendation?
Correct Answer: C
This should be the committee's first recommendation, as it will help to identify and evaluate the potential threats, vulnerabilities, and impacts of using personal smartphones to conduct corporate business1. A risk assessment will also help to determine the appropriate controls and mitigation strategies to protect the corporate information and assets, as well as comply with the relevant regulations and standards1. The other options are not as important as performing a risk assessment, as they are dependent on the outcome of this step. Documenting procedures for securing personal devices, improving training courses on securing corporate information, and updating the corporate security policy to include personal devices are possible actions that may be taken after performing a risk assessment, based on the identified risks and their levels2.