ExamGecko
Question list
Search
Search

Question 609 - CISM discussion

Report
Export

Which of the following is the BEST way to obtain organization-wide support for an information security program?

A.
Mandate regular security awareness training.
Answers
A.
Mandate regular security awareness training.
B.
Develop security performance metrics.
Answers
B.
Develop security performance metrics.
C.
Position security as a business enabler.
Answers
C.
Position security as a business enabler.
D.
Prioritize security initiatives based on IT strategy.
Answers
D.
Prioritize security initiatives based on IT strategy.
Suggested answer: C

Explanation:

Positioning security as a business enabler is the BEST way to obtain organization-wide support for an information security program, because it helps to demonstrate the value and benefits of security to the organization's strategic objectives, performance, and reputation. By aligning security with the business goals and needs, the information security manager can gain the buy-in and commitment of senior management and other stakeholders, and foster a positive security culture across the organization.

Reference=

CISM Review Manual, 16th Edition, ISACA, 2020, p. 37: ''The information security manager should position information security as a business enabler that supports the achievement of the enterprise's business objectives and adds value to the enterprise.''

CISM Review Manual, 16th Edition, ISACA, 2020, p. 39: ''The information security manager should communicate the value and benefits of information security to senior management and other stakeholders to obtain their support and commitment for the information security program.''

CISM Review Manual, 16th Edition, ISACA, 2020, p. 40: ''The information security manager should promote a positive security culture within the enterprise by influencing the behavior and attitude of employees and other parties toward information security.''

asked 01/10/2024
An Khang Nguyen
48 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first