ExamGecko
Question list
Search
Search

Question 593 - CISM discussion

Report
Export

Which of the following is MOST important to include in an information security status report to senior management?

A.
Key risk indicators (KRIs)
Answers
A.
Key risk indicators (KRIs)
B.
Review of information security policies
Answers
B.
Review of information security policies
C.
Information security budget requests
Answers
C.
Information security budget requests
D.
List of recent security events
Answers
D.
List of recent security events
Suggested answer: A

Explanation:

According to the CISM Review Manual, key risk indicators (KRIs) are the most important information to include in an information security status report to senior management, as they provide a measure of the current level of risk exposure and the effectiveness of the risk management activities. KRIs also help to identify trends, patterns and emerging risks that may require management attention or action.

Reference= CISM Review Manual, 27th Edition, Chapter 4, Section 4.3.2, page 209

asked 01/10/2024
Longin Winconek
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first