You are the ISSO for an organization and have been tasked wi…

You are the ISSO for an organization and have been tasked with creating a report based on analysis comparing the company’s current security posture to the recommendations contained in a cybersecurity framework. Which of the following will provide insight into the deficiencies your organization can address to improve security?