ExamGecko
Question list
Search
Search

Question 598 - CISM discussion

Report
Export

Which of the following is MOST important when developing an information security strategy?

A.
Engage stakeholders.
Answers
A.
Engage stakeholders.
B.
Assign data ownership.
Answers
B.
Assign data ownership.
C.
Determine information types.
Answers
C.
Determine information types.
D.
Classify information assets.
Answers
D.
Classify information assets.
Suggested answer: A

Explanation:

According to the CISM Review Manual, engaging stakeholders is the most important step when developing an information security strategy, as it helps to ensure that the strategy is aligned with the business objectives, expectations, and requirements of the stakeholders. Engaging stakeholders also helps to gain their support and commitment for the implementation and maintenance of the strategy. Assigning data ownership, determining information types, and classifying information assets are possible subsequent steps, but not the most important one.

Reference= CISM Review Manual, 27th Edition, Chapter 2, Section 2.1.1, page 731.

asked 01/10/2024
Ackim Sanuka
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first