CISM Exam QuestionsBrowse all questions from this exam

CISM Exam - Question 1087


When an organization implements an information security governance framework, it is MOST important for executive leadership to have a direct role in:

Show Answer
Correct Answer: AD

Executive leadership plays a critical role in ensuring alignment with organizational goals, risk management, and compliance. While reviewing policies and developing technical indicators are important, it is most vital for executives to approve information security standards and procedures. Their approval ensures that the standards and procedures align with the overall mission, regulatory requirements, and risk appetite of the organization.

Discussion

1 comment
Sign in to comment
BooictOption: D
Jul 16, 2024

D - approving information security standards and procedures for the organization”. While direct review by executives may not occur, their approval ensures alignment with organizational goals, risk management, and compliance. This is according to according to CISM principles. Not sure why the answer is A.