ExamGecko
Question list
Search
Search

Question 245 - CISM discussion

Report
Export

Which of the following events would MOST likely require a revision to the information security program?

A.
An increase in industry threat level .
Answers
A.
An increase in industry threat level .
B.
A significant increase in reported incidents
Answers
B.
A significant increase in reported incidents
C.
A change in IT management
Answers
C.
A change in IT management
D.
A merger with another organization
Answers
D.
A merger with another organization
Suggested answer: D

Explanation:

= A merger with another organization would MOST likely require a revision to the information security program, because it involves a significant change in the scope, structure, and objectives of the organization. A merger could affect the information security policies, procedures, roles, responsibilities, and resources of the organization, as well as introduce new risks and challenges. Therefore, the information security program should be reviewed and updated to reflect the new situation and ensure alignment with the organizational goals and strategies.An increase in industry threat level, a significant increase in reported incidents, and a change in IT management are all events that could affect the information security program without necessarily requiring a revision.Reference= CISM Review Manual, 16th Edition, page 3181; CISM Review Questions, Answers & Explanations Manual, 10th Edition, page 1532

asked 01/10/2024
Muhanad Mohamed
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first