ExamGecko
Question list
Search
Search

Question 12 - CISM discussion

Report
Export

Which of the following is a desired outcome of information security governance?

A.
Penetration test
Answers
A.
Penetration test
B.
Improved risk management
Answers
B.
Improved risk management
C.
Business agility
Answers
C.
Business agility
D.
A maturity model
Answers
D.
A maturity model
Suggested answer: C

Explanation:

Business agility is a desired outcome of information security governance, as it enables the organization to respond quickly and effectively to changing business needs and opportunities, while maintaining a high level of security and risk management. Information security governance provides the strategic direction, policies, standards, and oversight for the information security program, ensuring that it aligns with the organization's business objectives and stakeholder expectations. Information security governance also facilitates the integration of security into the business processes and systems, enhancing the organization's ability to adapt to the dynamic and complex environment. By implementing information security governance, the organization can achieve business agility, as well as other benefits such as improved risk management, compliance, reputation, and value creation.Reference= CISM Review Manual 15th Edition, page 25.

asked 01/10/2024
MARTIN WEAVER
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first