Free ISACA CISM Exam Braindumps (page: 44)

When establishing an information security governance framework, it is MOST important for an information security manager to understand:

  1. the regulatory environment.
  2. information security best practices.
  3. the corporate culture.
  4. risk management techniques.

Answer(s): A



Which of the following is a PRIMARY responsibility of the information security governance function?

  1. Defining security strategies to support organizational programs
  2. Ensuring adequate support for solutions using emerging technologies
  3. Fostering a risk-aware culture to strengthen the information security program
  4. Advising senior management on optimal levels of risk appetite and tolerance

Answer(s): A



Which of the following is the MOST important requirement for the successful implementation of security governance?

  1. Implementing a security balanced scorecard
  2. Performing an enterprise-wide risk assessment
  3. Mapping to organizational strategies
  4. Aligning to an international security framework

Answer(s): C



A large organization is in the process of developing its information security program that involves working with several complex organizational functions. Which of the following will BEST enable the successful implementation of this program?

  1. Security governance
  2. Security policy
  3. Security metrics
  4. Security guidelines

Answer(s): A



Viewing page 44 of 430
Viewing questions 173 - 176 out of 1716 questions



Post your Comments and Discuss ISACA CISM exam prep with other Community members:

CISM Exam Discussions & Posts