ExamGecko
Question list
Search
Search

Question 588 - CISM discussion

Report
Export

Company A, a cloud service provider, is in the process of acquiring Company B to gain new benefits by incorporating their technologies within its cloud services.

Which of the following should be the PRIMARY focus of Company A's information security manager?

A.
The organizational structure of Company B
Answers
A.
The organizational structure of Company B
B.
The cost to align to Company A's security policies
Answers
B.
The cost to align to Company A's security policies
C.
Company A's security architecture
Answers
C.
Company A's security architecture
D.
Company B's security policies
Answers
D.
Company B's security policies
Suggested answer: D

Explanation:

According to the CISM Review Manual, the security architecture of an organization defines the security principles, standards, guidelines and procedures that support the information security strategy and align with the business objectives. When acquiring another company, the information security manager of the acquiring company should focus on ensuring that the security architecture of the acquired company is compatible with its own, or that any gaps or conflicts are identified and resolved.

Reference= CISM Review Manual, 27th Edition, Chapter 2, Section 2.1.2, page 751.

asked 01/10/2024
Edgar Garcia Tobias
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first