ExamGecko
Question list
Search
Search

Related questions

Question 179 - CISA discussion

Report
Export

An organization is considering allowing users to connect personal devices to the corporate network. Which of the following should be done FIRST?

A.
Conduct security awareness training.
Answers
A.
Conduct security awareness training.
B.
Implement an acceptable use policy
Answers
B.
Implement an acceptable use policy
C.
Create inventory records of personal devices
Answers
C.
Create inventory records of personal devices
D.
Configure users on the mobile device management (MDM) solution
Answers
D.
Configure users on the mobile device management (MDM) solution
Suggested answer: B

Explanation:

The first thing that should be done before allowing users to connect personal devices to the corporate network is to implement an acceptable use policy. An acceptable use policy is a document that defines the rules and guidelines for using personal devices on the corporate network, such as security requirements, access rights, responsibilities, and consequences. An acceptable use policy can help to protect the organization from potential risks such as data leakage, malware infection, or legal liability. The other options are not as important as implementing an acceptable use policy, as they do not establish the boundaries and expectations for using personal devices on the corporate network.Reference:CISA Review Manual, 27th Edition, page 318

asked 18/09/2024
Sébastien PIERRE
48 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first