Isaca CISA Question Answer
An organization ' s information security policies should be developed PRIMARILY on the basis of:
enterprise architecture (EA).
industry best practices.
a risk management process.
past information security incidents.
TESTED 09 Apr 2026
Copyright © 2014-2026 ACE4Sure. All Rights Reserved