ExamGecko
Question list
Search
Search

Question 193 - CISM discussion

Report
Export

Which of the following is the BEST indication of information security strategy alignment with the:

A.
Percentage of information security incidents resolved within defined service level agreements (SLAs)
Answers
A.
Percentage of information security incidents resolved within defined service level agreements (SLAs)
B.
Percentage of corporate budget allocated to information security initiatives
Answers
B.
Percentage of corporate budget allocated to information security initiatives
C.
Number of business executives who have attended information security awareness sessions
Answers
C.
Number of business executives who have attended information security awareness sessions
D.
Number of business objectives directly supported by information security initiatives
Answers
D.
Number of business objectives directly supported by information security initiatives
Suggested answer: D

Explanation:

The number of business objectives directly supported by information security initiatives is the best indication of information security strategy alignment with the organizational goals and objectives. This metric shows how well the information security strategy is aligned with the business strategy, and how effectively the information security program is delivering value to the organization. The more business objectives that are supported by information security initiatives, the more aligned the information security strategy is with the organizational goals and objectives.

The other options are not the best indicators of information security strategy alignment, as they do not directly measure the impact or contribution of information security initiatives to the business objectives. The percentage of information security incidents resolved within defined SLAs is a measure of the efficiency and effectiveness of the incident management process, but it does not reflect how well the information security strategy is aligned with the business strategy. The percentage of corporate budget allocated to information security initiatives is a measure of the investment and commitment of the organization to information security, but it does not indicate how well the information security initiatives are aligned with the business objectives or how they are prioritized. The number of business executives who have attended information security awareness sessions is a measure of the awareness and involvement of the senior management in information security, but it does not show how well the information security strategy is aligned with the business strategy or how it supports the business objectives.Reference=

CISM Exam Content Outline | CISM Certification | ISACA, Domain 1, Task 1.1

CISM MASTER CHEAT SHEET - SkillCertPro, Chapter 1, page 2

Certified Information Security Manager (CISM), page 1

Certified Information Security Manager Exam Prep Guide: Aligned with ..., page 1

CISM: Certified Information Security SKILLS COVERED Manager, page 1

asked 01/10/2024
Daniel Yamamoto
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first