nerdexam
(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #214

What is the main purpose of an Acceptable Use Policy (AUP)?

The correct answer is A. Informs users of company expectations when they use computer systems and networks. An Acceptable Use Policy (AUP) is a formal document that communicates to users what is and is not permitted when using an organization's IT resources (computers, networks, internet, email, etc.). Its main purpose is to set clear expectations and boundaries so users understand…

Security Principles

Question

What is the main purpose of an Acceptable Use Policy (AUP)?

Options

  • AInforms users of company expectations when they use computer systems and networks
  • BEnsure the security of the organization's network and computer systems
  • CTo provide guidelines when choosing your corporate password
  • DTo monitor the use of the organization's network and computer systems

How the community answered

(51 responses)
  • A
    94% (48)
  • B
    4% (2)
  • C
    2% (1)

Explanation

An Acceptable Use Policy (AUP) is a formal document that communicates to users what is and is not permitted when using an organization's IT resources (computers, networks, internet, email, etc.). Its main purpose is to set clear expectations and boundaries so users understand their responsibilities. Option B describes a network security policy or security program goal more broadly. Option C describes a password policy specifically. Option D describes monitoring or network management activities. While an AUP may mention monitoring or passwords, its defining purpose is to inform users of acceptable behavior and organizational expectations.

Topics

#Acceptable Use Policy#Cybersecurity Policy#User Responsibility#Security Governance

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY Practice