Free ISACA CISM Exam Braindumps (page: 53)

Which of the following is the BEST evidence that an organization's information security governance framework is effective?

  1. Threats to the organization have diminished.
  2. The risk register is reviewed annually.
  3. The framework focuses primarily on technical controls.
  4. The framework can adapt to organizational changes.

Answer(s): A



In information security governance, the PRIMARY role of the board of directors is to ensure:

  1. approval of relevant policies and standards.
  2. communication of security posture to stakeholders.
  3. compliance with regulations and best practices.
  4. alignment with the strategic goals of the organization.

Answer(s): D



Which of the following is the STRONGEST indicator of effective alignment between corporate governance and information security governance?

  1. Senior management sponsors information security efforts.
  2. Senior management requests periodic information security updates.
  3. Key performance indicators (KPIs) for controls trend positively.
  4. Information security initiatives meet scope. schedule, and budget.

Answer(s): C



Which of the following should be the PRIMARY consideration when developing a security governance framework for an enterprise?

  1. Understanding of the current business strategy
  2. Assessment of the current security architecture
  3. Results of a business impact analysis (BIA)
  4. Benchmarking against industry best practice

Answer(s): A



Viewing page 53 of 430
Viewing questions 209 - 212 out of 1716 questions



Post your Comments and Discuss ISACA CISM exam prep with other Community members:

CISM Exam Discussions & Posts