ExamGecko
Question list
Search
Search

Question 584 - CISM discussion

Report
Export

Before approving the implementation of a new security solution, senior management requires a business case. Which of the following would BEST support the justification for investment?

A.
The solution contributes to business strategy.
Answers
A.
The solution contributes to business strategy.
B.
The solution improves business risk tolerance levels.
Answers
B.
The solution improves business risk tolerance levels.
C.
The solution improves business resiliency.
Answers
C.
The solution improves business resiliency.
D.
The solution reduces the cost of noncompliance with regulations.
Answers
D.
The solution reduces the cost of noncompliance with regulations.
Suggested answer: A

Explanation:

The best way to support the justification for investment in a new security solution is to show how the solution contributes to the business strategy of the organization. The business strategy defines the vision, mission, goals, and objectives of the organization, and the security solution should align with and support them. The security solution should also demonstrate how it adds value to the organization, such as by enabling new business opportunities, enhancing customer satisfaction, or increasing competitive advantage.The business case should include the expected benefits, costs, risks, and alternatives of the security solution, and provide a clear rationale for choosing the preferred option1.

Reference= CISM Review Manual, 16th Edition eBook2, Chapter 1: Information Security Governance, Section: Information Security Strategy, Subsection: Business Case Development, Page 33.

asked 01/10/2024
Andrew Chan
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first