ExamGecko
Question list
Search
Search

Related questions











Question 539 - CISA discussion

Report
Export

Which of the following findings should be of GREATEST concern to an IS auditor reviewing an organization s newly implemented online security awareness program'?

A.
Only new employees are required to attend the program
Answers
A.
Only new employees are required to attend the program
B.
Metrics have not been established to assess training results
Answers
B.
Metrics have not been established to assess training results
C.
Employees do not receive immediate notification of results
Answers
C.
Employees do not receive immediate notification of results
D.
The timing for program updates has not been determined
Answers
D.
The timing for program updates has not been determined
Suggested answer: B

Explanation:

The greatest concern for an IS auditor reviewing an online security awareness program is that metrics have not been established to assess training results. Without metrics, it is difficult to measure the effectiveness of the program and identify areas for improvement.The other findings are also issues that need to be addressed, but they are not as significant as the lack of metrics.Reference:CISA Review Manual (Digital Version), Chapter 5, Section 5.3.11

asked 18/09/2024
Ammar Khan
24 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first