ExamGecko
Question list
Search
Search

Question 611 - CISM discussion

Report
Export

Company A, a cloud service provider, is in the process of acquiring Company B to gain new benefits by incorporating their technologies within its cloud services.

Which of the following should be the PRIMARY focus of Company A's information security manager?

A.
Company B's security policies
Answers
A.
Company B's security policies
B.
The cost to align to Company A's security policies
Answers
B.
The cost to align to Company A's security policies
C.
Company A's security architecture
Answers
C.
Company A's security architecture
D.
The organizational structure of Company B
Answers
D.
The organizational structure of Company B
Suggested answer: C

Explanation:

Company A's security architecture is the PRIMARY focus of Company A's information security manager, because it defines the overall security design and controls for the cloud services that Company A provides to its customers. The information security manager should ensure that the security architecture is aligned with the business objectives and requirements of Company A, and that it can accommodate the integration of Company B's technologies without compromising the security, performance, and availability of the cloud services.

Reference=

CISM Review Manual, 16th Edition, ISACA, 2020, p. 67: ''Security architecture is the design of the security controls that are applied to the information assets and the relationships among those assets.''

CISM Review Manual, 16th Edition, ISACA, 2020, p. 68: ''The information security manager should ensure that the security architecture is aligned with the enterprise's business objectives and requirements and supports the information security strategy and program.''

CISM Review Manual, 16th Edition, ISACA, 2020, p. 69: ''The information security manager should consider the impact of changes in the enterprise environment, such as mergers and acquisitions, on the security architecture and identify the necessary modifications or enhancements to maintain the security posture of the enterprise.''

asked 01/10/2024
luis coco enriquez
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first