1. Information security uses administrative, t
1. Information security uses administrative, technical (logical), and physical controls to mitigate risks related to organization's assets. A policy is an administrative control. If no policy exist in the IT department, research shows that employees will default to a defacto policy. A defacto policy means a policy that is in...