ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 174 - SY0-701 discussion

Report
Export

Which of the following factors are the most important to address when formulating a training curriculum plan for a security awareness program? (Select two).

A.
Channels by which the organization communicates with customers
Answers
A.
Channels by which the organization communicates with customers
B.
The reporting mechanisms for ethics violations
Answers
B.
The reporting mechanisms for ethics violations
C.
Threat vectors based on the industry in which the organization operates
Answers
C.
Threat vectors based on the industry in which the organization operates
D.
Secure software development training for all personnel
Answers
D.
Secure software development training for all personnel
E.
Cadence and duration of training events
Answers
E.
Cadence and duration of training events
F.
Retraining requirements for individuals who fail phishing simulations
Answers
F.
Retraining requirements for individuals who fail phishing simulations
Suggested answer: C, E

Explanation:

A training curriculum plan for a security awareness program should address the following factors:

The threat vectors based on the industry in which the organization operates. This will help the employees to understand the specific risks and challenges that their organization faces, and how to protect themselves and the organization from cyberattacks.For example, a healthcare organization may face different threat vectors than a financial organization, such as ransomware, data breaches, or medical device hacking1.

The cadence and duration of training events. This will help the employees to retain the information and skills they learn, and to keep up with the changing security landscape. The training events should be frequent enough to reinforce the key concepts and behaviors, but not too long or too short to lose the attention or interest of the employees.For example, a security awareness program may include monthly newsletters, quarterly webinars, annual workshops, or periodic quizzes2.

asked 02/10/2024
abdirashid ahmed
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first