ExamGecko
Question list
Search
Search

Question 280 - CISM discussion

Report
Export

To help ensure that an information security training program is MOST effective its contents should be

A.
focused on information security policy.
Answers
A.
focused on information security policy.
B.
aligned to business processes
Answers
B.
aligned to business processes
C.
based on employees' roles
Answers
C.
based on employees' roles
D.
based on recent incidents
Answers
D.
based on recent incidents
Suggested answer: C

Explanation:

''An information security training program should be tailored to the specific roles and responsibilities of employees. This will help them understand how their actions affect information security and what they need to do to protect it. A generic training program that is focused on policy, business processes or recent incidents may not be relevant or effective for all employees.''

asked 01/10/2024
josh hill
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first