What information should an IT system analysis provide to the risk assessor?
A. Management buy-in
B. Threat statement
C. Security architecture
D. Impact analysis
A. Management buy-in
B. Threat statement
C. Security architecture
D. Impact analysis