ExamGecko
Question list
Search
Search

Question 367 - CISM discussion

Report
Export

Which of the following has the GREATEST influence on the successful integration of information security within the business?

A.
Organizational structure and culture
Answers
A.
Organizational structure and culture
B.
Risk tolerance and organizational objectives
Answers
B.
Risk tolerance and organizational objectives
C.
The desired state of the organization
Answers
C.
The desired state of the organization
D.
Information security personnel
Answers
D.
Information security personnel
Suggested answer: A

Explanation:

The factor that has the greatest influence on the successful integration of information security within the business is organizational structure and culture because they determine how information security is organized, governed, and supported within the organization, and how information security roles and responsibilities are defined, assigned, and communicated across different levels and functions. Risk tolerance and organizational objectives are not very influential because they do not affect how information security is integrated within the business, but rather what information security aims to achieve or protect. The desired state of the organization is not very influential because it does not affect how information security is integrated within the business, but rather what the organization aspires to be or do. Information security personnel are not very influential because they do not affect how information security is integrated within the business, but rather who performs information security tasks or activities.

Reference: https://www.isaca.org/resources/isaca-journal/issues/2016/volume-4/technical-security-standards-for-information-systems https://www.isaca.org/resources/isaca-journal/issues/2017/volume-2/how-to-align-security-initiatives-with-business-goals-and-objectives

asked 01/10/2024
Oscar Ballabriga
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first