CISM Exam QuestionsBrowse all questions from this exam

CISM Exam - Question 507


Which of the following is the MOST effective way to ensure information security policies are understood?

Show Answer
Correct Answer: D

The most effective way to ensure information security policies are understood is to provide regular security awareness training. Training allows employees to actively engage with the material, ask questions, and internalize the importance and specifics of security policies. This approach is more likely to lead to a deeper understanding compared to documenting procedures or including responsibilities in job descriptions, which are more passive methods. Implementing a whistle-blower program does not directly contribute to the understanding of the policies.

Discussion

3 comments
Sign in to comment
Souvik124Option: D
Feb 17, 2023

D. Provide regular security awareness training.

richck102Option: D
Jun 29, 2023

D. Provide regular security awareness training.

afb4b17Option: D
Jun 17, 2024

Key word here is " understood" . To understand is done by training.