ExamGecko
Question list
Search
Search

Question 647 - CISM discussion

Report
Export

The ULTIMATE responsibility for ensuring the objectives of an information security framework are being met belongs to:

A.
the internal audit manager.
Answers
A.
the internal audit manager.
B.
the information security officer.
Answers
B.
the information security officer.
C.
the steering committee.
Answers
C.
the steering committee.
D.
the board of directors.
Answers
D.
the board of directors.
Suggested answer: D

Explanation:

The board of directors is the ultimate authority and accountability for ensuring the objectives of an information security framework are being met, as they are responsible for setting the strategic direction, approving the policies, overseeing the performance, and ensuring the compliance of the organization. The board of directors also delegates the authority and resources to the information security officer, the steering committee, and the internal audit manager, who are involved in the design, implementation, monitoring, and improvement of the information security framework.

Reference= CISM Review Manual, 27th Edition, Chapter 4, Section 4.1.1, page 2131; CISM Online Review Course, Module 4, Lesson 1, Topic 12; CISM domain 1: Information security governanceUpdated 2022

asked 01/10/2024
Alex Ng
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first