ExamGecko
Question list
Search
Search

Question 604 - CISM discussion

Report
Export

Which of the following is the MOST essential element of an information security program?

A.
Benchmarking the program with global standards for relevance
Answers
A.
Benchmarking the program with global standards for relevance
B.
Prioritizing program deliverables based on available resources
Answers
B.
Prioritizing program deliverables based on available resources
C.
Involving functional managers in program development
Answers
C.
Involving functional managers in program development
D.
Applying project management practices used by the business
Answers
D.
Applying project management practices used by the business
Suggested answer: C

Explanation:

Involving functional managers in program development is the most essential element of an information security program, because they are responsible for ensuring that the information security policies, standards, and procedures are implemented and enforced within their respective business units. They also provide input and feedback on the information security requirements, risks, and controls that affect their operations and objectives.

Reference=

CISM Review Manual, 16th Edition, ISACA, 2020, p. 37: ''Functional managers are responsible for ensuring that the information security policies, standards, and procedures are implemented and enforced within their respective business units.''

CISM Review Manual, 16th Edition, ISACA, 2020, p. 38: ''Functional managers should be involved in the development of the information security program to provide input and feedback on the information security requirements, risks, and controls that affect their operations and objectives.''

asked 01/10/2024
Darren Sloan
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first