ExamGecko
Question list
Search
Search

Question 57 - CISM discussion

Report
Export

Which of the following will result in the MOST accurate controls assessment?

A.
Mature change management processes
Answers
A.
Mature change management processes
B.
Senior management support
Answers
B.
Senior management support
C.
Well-defined security policies
Answers
C.
Well-defined security policies
D.
Unannounced testing
Answers
D.
Unannounced testing
Suggested answer: D

Explanation:

Unannounced testing is the most accurate way to assess the effectiveness of controls, as it simulates a real-world scenario and does not allow the staff to prepare or modify their behavior in advance. Mature change management processes, senior management support, and well-defined security policies are all important factors for establishing and maintaining a strong security posture, but they do not directly measure the performance of controls.Reference= CISM Review Manual, 16th Edition, page 149. CISM Questions, Answers & Explanations Database, question ID 1003.

asked 01/10/2024
H Barral Vila
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first