ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 134 - PK0-005 discussion

Report
Export

Which of the following metrics BE ST measures the alignment of the information security program to operational objectives?

A.
Percentage of controls with identified business owners
Answers
A.
Percentage of controls with identified business owners
B.
Percentage of risk investments with defined business cases
Answers
B.
Percentage of risk investments with defined business cases
C.
Ratio of control cost to operational budget
Answers
C.
Ratio of control cost to operational budget
D.
Senior management satisfaction scores related to the security program
Answers
D.
Senior management satisfaction scores related to the security program
Suggested answer: B

Explanation:

The percentage of risk investments with defined business cases is a metric that measures how well the information security program aligns with the operational objectives of the organization. It indicates how many of the security-related investments are justified by a clear analysis of the expected benefits, costs, and risks, and how they support the business goals and priorities.This metric can help the organization optimize its security spending, demonstrate the value of security to the stakeholders, and align the security strategy with the business strategy1.Reference=Performance Measurement Guide for Information Security, Section 3.2.3, page 16;Key Performance Indicators for Security Governance, Part 1, Section 3, page 3.

asked 02/10/2024
Karl Newick
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first