ExamGecko
Question list
Search
Search

Related questions











Question 511 - CISA discussion

Report
Export

When classifying information, it is MOST important to align the classification to:

A.
business risk
Answers
A.
business risk
B.
security policy
Answers
B.
security policy
C.
data retention requirements
Answers
C.
data retention requirements
D.
industry standards
Answers
D.
industry standards
Suggested answer: A

Explanation:

When classifying information, it is most important to align the classification to business risk, because it ensures that the information is protected according to its value and impact to the organization34.Business risk considers factors such as legal, regulatory, contractual, operational, reputational, and financial implications of information disclosure or compromise34. Aligning information classification to business risk also helps to prioritize and allocate resources for information security measures.Security policy, data retention requirements, and industry standards are important considerations for information classification, but not as important as business risk.Reference:3: CISA Review Manual (Digital Version), Chapter 5, Section 5.4.24: CISA Online Review Course, Module 5, Lesson 4

asked 18/09/2024
EDUARDO VIDAL
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first