ExamGecko
Question list
Search
Search

Question 179 - CISM discussion

Report
Export

Which of the following BEST indicates the effectiveness of a recent information security awareness campaign delivered across the organization?

A.
Decrease in the number of security incidents
Answers
A.
Decrease in the number of security incidents
B.
Increase in the frequency of security incident escalations
Answers
B.
Increase in the frequency of security incident escalations
C.
Reduction in the impact of security incidents
Answers
C.
Reduction in the impact of security incidents
D.
Increase in the number of reported security incidents
Answers
D.
Increase in the number of reported security incidents
Suggested answer: D

Explanation:

The best indicator of the effectiveness of a recent information security awareness campaign delivered across the organization is the increase in the number of reported security incidents. This means that the employees have become more aware of the security threats and issues, and have learned how to recognize and report them to the appropriate authorities. Reporting security incidents is a vital part of the incident response process, as it helps to identify and contain the incidents, prevent further damage, and initiate the recovery actions. Reporting security incidents also helps to collect and analyze the incident data, which can be used to improve the security controls and policies, and to prevent or mitigate similar incidents in the future. An increase in the number of reported security incidents shows that the awareness campaign has successfully raised the level of security knowledge, attitude, and behavior among the employees, and has encouraged them to take an active role in protecting the organization's information assets.

Reference=

CISM Review Manual 15th Edition, page 1631

Measuring and Evaluating the Effectiveness of Security Awareness Improvement Methods2

Developing metrics to assess the effectiveness of cybersecurity awareness program3

How to build a successful information security awareness programme - BCS4

How to Increase Cybersecurity Awareness - ISACA5

asked 01/10/2024
Dmitry Balikhin
24 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first