CISM Certified Information Security Manager – Question0209

Who should decide the extent to which an organization will comply with new cybersecurity regulatory requirements?

A.
Senior management
B. IT steering committee
C. Legal counsel
D. Information security manager

Correct Answer: A