Exam CISM All QuestionsBrowse all questions from this exam
Question 507

Which of the following is the MOST effective way to ensure information security policies are understood?

    Correct Answer: D

    The most effective way to ensure information security policies are understood is to provide regular security awareness training. Training allows employees to actively engage with the material, ask questions, and internalize the importance and specifics of security policies. This approach is more likely to lead to a deeper understanding compared to documenting procedures or including responsibilities in job descriptions, which are more passive methods. Implementing a whistle-blower program does not directly contribute to the understanding of the policies.

Discussion
Souvik124Option: D

D. Provide regular security awareness training.

afb4b17Option: D

Key word here is " understood" . To understand is done by training.

richck102Option: D

D. Provide regular security awareness training.