Free ISACA CISM Exam Braindumps (page: 50)

Which of the following is MOST important to the successful implementation of an information security governance framework across the organization?

  1. Organizational security controls deployed in line with regulations
  2. Security management processes aligned with security objectives
  3. The existing organizational security culture
  4. Security policies that adhere to industry best practices

Answer(s): B



Which of the following is the MOST effective way to achieve the integration of information security governance into corporate governance?

  1. Align information security budget requests to organizational goals
  2. Ensure information security efforts support business goals
  3. Provide periodic IT balanced scorecards to senior management
  4. Ensure information security aligns with IT strategy

Answer(s): A



To gain a clear understanding of the impact that a new regulatory requirement will have on an organization’s information security controls, an information security manager should FIRST:

  1. interview senior management
  2. conduct a risk assessment
  3. conduct a cost-benefit analysis
  4. perform a gap analysis

Answer(s): D



The PRIMARY purpose of implementing information security governance metrics is to:

  1. measure alignment with best practices.
  2. assess operational and program metrics.
  3. refine control operations,
  4. guide security towards the desired state.

Answer(s): D



Viewing page 50 of 430
Viewing questions 197 - 200 out of 1716 questions



Post your Comments and Discuss ISACA CISM exam prep with other Community members:

CISM Exam Discussions & Posts