ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 293 - CS0-003 discussion

Report
Export

The Chief Information Security Officer (CISO) of a large management firm has selected a cybersecurity framework that will help the organization demonstrate its investment in tools and systems to protect its data. Which of the following did the CISO most likely select?

A.
PCI DSS
Answers
A.
PCI DSS
B.
COBIT
Answers
B.
COBIT
C.
ISO 27001
Answers
C.
ISO 27001
D.
ITIL
Answers
D.
ITIL
Suggested answer: C

Explanation:

ISO 27001 is an international standard that establishes a framework for implementing, maintaining, and improving an information security management system (ISMS). It helps organizations demonstrate their commitment to protecting their data and complying with various regulations and best practices. The other options are not relevant for this purpose: PCI DSS is a standard that focuses on protecting payment card data; COBIT is a framework that provides guidance on governance and management of enterprise IT; ITIL is a framework that provides guidance on service management and delivery.

According to the CompTIA CySA+ Study Guide: Exam CS0-003, 3rd Edition1, one of the objectives for the exam is to ''use appropriate tools and methods to manage, prioritize and respond to attacks and vulnerabilities''. The book also covers the usage and syntax of various cybersecurity frameworks and standards, such as ISO 27001, PCI DSS, COBIT, and ITIL, in chapter 1. Specifically, it explains the meaning and function of each framework and standard, such as ISO 27001, which provides a comprehensive approach to information security management1, page 29. Therefore, this is a reliable source to verify the answer to the question.

asked 02/10/2024
Jenny Silva
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first