ExamGecko
Home / Isaca / NIST-COBIT-2019 / Practice Test 1
Ask Question

Isaca NIST-COBIT-2019 Practice Test 1

Add to Whishlist
00:00:00
Show Answer
Report Issue   Restart test

Question 1 / 40

Which of the following is MOST important for successful execution of CSF implementation Step 6 - Determine, Analyze, and Prioritize Gaps?

Have management review and approve the gap analysis.

Have management review and approve the gap analysis.

Engage external experts to perform a cost-benefit analysis.

Engage external experts to perform a cost-benefit analysis.

Engage business and IT process owners for internal expertise.

Engage business and IT process owners for internal expertise.

Comment (0)
Suggested answer: C
Explanation:

According to the ISACA guide, engaging business and IT process owners for internal expertise is most important for successful execution of CSF implementation Step 6, as they can provide valuable insights into the current and desired states of the processes, the gaps and potential solutions, and the costs and benefits of the implementation1. They can also help to align the cybersecurity program with the business objectives and risk appetite of the organization.

Reference Implementing the NIST Cybersecurity Framework Using COBIT 2019, page 17.

asked 18/11/2024
Idan Bar-On
47 questions