ExamGecko
Question list
Search
Search

Question 539 - CISM discussion

Report
Export

Which of the following would BEST help to ensure compliance with an organization's information security requirements by an IT service provider?

A.
Requiring an external security audit of the IT service provider
Answers
A.
Requiring an external security audit of the IT service provider
B.
Requiring regular reporting from the IT service provider
Answers
B.
Requiring regular reporting from the IT service provider
C.
Defining information security requirements with internal IT
Answers
C.
Defining information security requirements with internal IT
D.
Defining the business recovery plan with the IT service provider
Answers
D.
Defining the business recovery plan with the IT service provider
Suggested answer: B

Explanation:

Requiring regular reporting from the IT service provider is the best way to ensure compliance with the organization's information security requirements, as it allows the organization to monitor the performance, security incidents, service levels, and compliance status of the IT service provider. Reporting also helps to identify any gaps or issues that need to be addressed or resolved. (From CISM Review Manual 15th Edition)

asked 01/10/2024
Ahmed Khan
47 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first