ExamGecko
Question list
Search
Search

Question 456 - CISM discussion

Report
Export

Embedding security responsibilities into job descriptions is important PRIMARILY because it:

A.
supports access management.
Answers
A.
supports access management.
B.
simplifies development of the security awareness program.
Answers
B.
simplifies development of the security awareness program.
C.
aligns security to the human resources (HR) function.
Answers
C.
aligns security to the human resources (HR) function.
D.
strengthens employee accountability.
Answers
D.
strengthens employee accountability.
Suggested answer: D

Explanation:

Comprehensive and Detailed Explanation: Employee accountability is the degree to which employees are responsible for their actions and outcomes related to information security. It reflects the extent to which employees understand their roles and responsibilities, follow the policies and procedures, report incidents and breaches, and comply with legal and regulatory requirements. Embedding security responsibilities into job descriptions helps to clarify the expectations and obligations of employees, as well as the consequences of non-compliance or negligence. It also helps to align the security objectives with the business goals and strategies, and to foster a culture of security awareness and responsibility.

asked 01/10/2024
Thanh Phan
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first