ExamGecko
Question list
Search
Search

Question 78 - CISM discussion

Report
Export

Which of the following is the BEST course of action for an information security manager to align security and business goals?

A.
Conducting a business impact analysis (BIA)
Answers
A.
Conducting a business impact analysis (BIA)
B.
Reviewing the business strategy
Answers
B.
Reviewing the business strategy
C.
Defining key performance indicators (KPIs)
Answers
C.
Defining key performance indicators (KPIs)
D.
Actively engaging with stakeholders
Answers
D.
Actively engaging with stakeholders
Suggested answer: D

Explanation:

= According to the CISM Review Manual, the information security manager should actively engage with stakeholders to align security and business goals. This means understanding the business needs, expectations, and risk appetite of the stakeholders, and communicating the value and benefits of security initiatives to them. By engaging with stakeholders, the information security manager can also gain their support and commitment for security programs and projects, and ensure that security objectives are aligned with business strategy and priorities.Reference= CISM Review Manual, 16th Edition, ISACA, 2020, page 23.

asked 01/10/2024
Andrea Chichiarelli
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first