ExamGecko
Question list
Search
Search

Question 273 - CISM discussion

Report
Export

Which of the following BEST demonstrates the added value of an information security program?

A.
Security baselines
Answers
A.
Security baselines
B.
A gap analysis
Answers
B.
A gap analysis
C.
A SWOT analysis
Answers
C.
A SWOT analysis
D.
A balanced scorecard
Answers
D.
A balanced scorecard
Suggested answer: D

Explanation:

A balanced scorecard is a tool that can be used to demonstrate the added value of an information security program by measuring and reporting on key performance indicators (KPIs) and key risk indicators (KRIs) aligned with strategic objectives. Security baselines, a gap analysis and a SWOT analysis are all useful for assessing and improving security posture, but they do not necessarily show how security contributes to business value.

asked 01/10/2024
Souf Maatoug
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first