nerdexam
Isaca

CISM · Question #619

What is the PRIMARY benefit to an organization that maintains an information security governance framework?

The correct answer is B. Business risks are managed to an acceptable level. The primary benefit of an information security governance framework is ensuring that business risks related to information security are identified, assessed, and managed to a level acceptable to the organization.

Submitted by parkjh· Apr 18, 2026Information Security Governance

Question

What is the PRIMARY benefit to an organization that maintains an information security governance framework?

Options

  • AInformation security guidelines are communicated across the enterprise.
  • BBusiness risks are managed to an acceptable level.
  • CThe organization remains compliant with regulatory requirements.
  • DResources are prioritized to maximize return on investment (ROI).

How the community answered

(42 responses)
  • A
    2% (1)
  • B
    95% (40)
  • C
    2% (1)

Explanation

The primary benefit of an information security governance framework is ensuring that business risks related to information security are identified, assessed, and managed to a level acceptable to the organization.

Topics

#Information security governance#Risk management#Business alignment#Primary benefit

Community Discussion

No community discussion yet for this question.

Full CISM Practice