PracticeTestGeeks home

ISO 27000 Foundation Certification FREE ISO 27000 Foundation Risk Assessment and Treatment Questions and Answers

A retail company has completed its risk assessment and identified a significant risk related to its online payment processing system.
The potential financial loss from a data breach is calculated to be extremely high.

The company decides to engage a third-party, PCI-DSS certified payment gateway to handle all transactions, thereby shifting the responsibility for securing cardholder data.

According to ISO 27001, which risk treatment option does this action represent?

Select your answer