ExamGecko
Question list
Search
Search

Question 333 - CISM discussion

Report
Export

For the information security manager, integrating the various assurance functions of an organization is important PRIMARILY to enable:

A.
consistent security.
Answers
A.
consistent security.
B.
comprehensive audits
Answers
B.
comprehensive audits
C.
a security-aware culture
Answers
C.
a security-aware culture
D.
compliance with policy
Answers
D.
compliance with policy
Suggested answer: A

Explanation:

Consistent security is the primary reason for integrating the various assurance functions of an organization for the information security manager because it ensures that the security policies and standards are applied uniformly and effectively across different domains, processes, and systems of the organization. Comprehensive audits are not the primary reason for integrating the various assurance functions, but rather a possible outcome or benefit of doing so. A security-aware culture is not the primary reason for integrating the various assurance functions, but rather a desirable state or goal of the organization. Compliance with policy is not the primary reason for integrating the various assurance functions, but rather a basic requirement or expectation of the organization.

Reference: https://www.isaca.org/resources/isaca-journal/issues/2016/volume-4/integrating-assurance-functions https://www.isaca.org/resources/isaca-journal/issues/2017/volume-3/how-to-measure-the-effectiveness-of-your-information-security-management-system

asked 01/10/2024
brandon landaal
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first