ExamGecko
Question list
Search
Search

Question 24 - NIST-COBIT-2019 discussion

Report
Export

During CSF implementation, when is an information security manager MOST likely to identify key enterprise and supporting alignment goals as previously understood?

A.

CSF Steps 5: Create a Target Profile and 6: Determine, Analyze, and Prioritize Gaps

Answers
A.

CSF Steps 5: Create a Target Profile and 6: Determine, Analyze, and Prioritize Gaps

B.

CSF Step 1: Prioritize and Scope

Answers
B.

CSF Step 1: Prioritize and Scope

C.

CSF Steps 2: Orient and 3: Create a Current Profile

Answers
C.

CSF Steps 2: Orient and 3: Create a Current Profile

Suggested answer: B

Explanation:

This CSF step corresponds to the COBIT objective of knowledge and understanding of enterprise goals, because it involves identifying the business drivers, mission, objectives, and risk appetite of the organization, as well as the scope and boundaries of the cybersecurity program12. This step helps to ensure that the cybersecurity activities and outcomes are aligned with the enterprise goals and strategy34.

asked 18/11/2024
Bartosz Szewczyk
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first