ExamGecko
Question list
Search
Search

Question 55 - CISM discussion

Report
Export

Which of the following will have the GREATEST influence on the successful adoption of an information security governance program?

A.
Security policies
Answers
A.
Security policies
B.
Control effectiveness
Answers
B.
Control effectiveness
C.
Security management processes
Answers
C.
Security management processes
D.
Organizational culture
Answers
D.
Organizational culture
Suggested answer: D

Explanation:

Organizational culture is the set of shared values, beliefs, and norms that influence the way employees think, feel, and behave in the workplace. It affects how employees perceive the importance of information security, how they comply with security policies and procedures, and how they support security initiatives and goals. A strong security culture can foster a sense of ownership, responsibility, and accountability among employees, as well as a positive attitude toward security awareness and training. A weak security culture can lead to resistance, indifference, or hostility toward security efforts, as well as increased risks of human errors, negligence, or malicious actions. Therefore, organizational culture has the greatest influence on the successful adoption of an information security governance program, which requires the commitment and involvement of all levels of the organization.Reference= CISM Review Manual 15th Edition, page 30-31.

Learn more:

asked 01/10/2024
Robert Aghten
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first