CompTIA Security+ (SY0-601) — Question 761
Which of the following is a benefit of including a risk management framework into an organization's security approach?
Answer options
- A. It defines expected service levels from participating supply chain partners to ensure system outages are remediated in a timely manner.
- B. It identifies specific vendor products that have been tested and approved for use in a secure environment.
- C. It provides legal assurances and remedies in the event a data breach occurs.
- D. It incorporates control, development, policy, and management activities into IT operations.
Correct answer: D
Explanation
The correct answer, D, highlights how a risk management framework enhances IT operations by integrating various activities, which is crucial for effective security management. Options A, B, and C, while relevant to security, do not encompass the comprehensive benefits of integrating risk management into the overall security approach.