ExamGecko
Question list
Search
Search

Question 631 - CISM discussion

Report
Export

An organization wants to integrate information security into its HR management processes. Which of the following should be the FIRST step?

A.
Benchmark the processes with best practice to identify gaps.
Answers
A.
Benchmark the processes with best practice to identify gaps.
B.
Calculate the return on investment (ROI).
Answers
B.
Calculate the return on investment (ROI).
C.
Provide security awareness training to HR.
Answers
C.
Provide security awareness training to HR.
D.
Assess the business objectives of the processes.
Answers
D.
Assess the business objectives of the processes.
Suggested answer: D

Explanation:

The first step when integrating information security into HR management processes is to assess the business objectives of the processes, which means understanding the purpose, scope, and expected outcomes of the HR functions and activities, and how they relate to the organization's strategy and goals. The assessment will help to identify the information security requirements, risks, and controls that are relevant and applicable to the HR processes, and to align the information security objectives with the business objectives.

Reference=CISM Review Manual 15th Edition,CISM: Overview of domains [updated 2022]

asked 01/10/2024
Bouchtig, Yassine
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first