nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #402

CERTIFIED-IN-CYBERSECURITY Question #402: Real Exam Question with Answer & Explanation

The correct answer is A: To provide specific step-by-step instructions to accomplish a task. A procedure is a detailed guide that provides step-by-step instructions on how to perform a specific task or activity. It ensures that tasks are performed consistently and correctly and helps maintain standardization and quality control within an organization (ISC2 Study Guide, C

Domain 1: Security Principles

Question

What is the purpose of a procedure?

Options

  • ATo provide specific step-by-step instructions to accomplish a task
  • BTo instruct how to ensure compliance
  • CTo enforce requirements and possibly carry penalties for non-compliance
  • DTo provide a set of criteria to be met

Explanation

A procedure is a detailed guide that provides step-by-step instructions on how to perform a specific task or activity. It ensures that tasks are performed consistently and correctly and helps maintain standardization and quality control within an organization (ISC2 Study Guide, Chapter 1, Module 4). The other options are incorrect. While a procedure can help ensure compliance with policies and standards, its primary purpose is not to enforce compliance or to impose penalties for non-compliance. That is typically the role of a policy. A procedure does provide a set of criteria to be met in the sense that it outlines the steps to be taken to complete a task, but this is a byproduct of its primary purpose, which is to provide specific instructions.

Topics

#Procedures#Documentation#Information Security Governance#GRC Fundamentals

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions