ExamGecko
Question list
Search
Search

Question 548 - CISM discussion

Report
Export

The PRIMARY purpose for continuous monitoring of security controls is to ensure:

A.
system availability.
Answers
A.
system availability.
B.
control gaps are minimized.
Answers
B.
control gaps are minimized.
C.
alignment with compliance requirements.
Answers
C.
alignment with compliance requirements.
D.
effectiveness of controls.
Answers
D.
effectiveness of controls.
Suggested answer: D

Explanation:

The primary purpose for continuous monitoring of security controls is to ensure that the controls are effective in achieving the desired security objectives and mitigating the identified risks. Continuous monitoring provides ongoing assurance that the planned and implemented security controls are aligned with the organizational risk tolerance and can respond to changes in the threat environment, the system, or the business processes. Continuous monitoring also helps to identify and address any control weaknesses or gaps in a timely manner.(From CISM Review Manual 15th Edition and NIST Special Publication 800-1371)

asked 01/10/2024
Joe Pardee
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first