CISM Certified Information Security Manager – Question1477

Which of the following is the MOST effective way to address an organization's security concerns during contract negotiations with a third party?

A.
Ensure security is involved in the procurement process.
B. Communicate security policy with the third-party vendor.
C. Review the third-party contract with the organization's legal department.
D. Conduct an information security audit on the third-party vendor.

Correct Answer: A