nerdexam
IsacaIsaca

CISM · Question #640

CISM Question #640: Real Exam Question with Answer & Explanation

Sign in or unlock CISM to reveal the answer and full explanation for question #640. The question stem and answer options stay visible for context.

Submitted by emma.c· Apr 18, 2026Information Security Governance

Question

Which of the following BEST indicates an effective security culture?

Options

  • ASecurity standards and policies are communicated to and followed by staff
  • BStaff are encouraged by senior management to report security incidents
  • CSecurity risk is managed and maintained within acceptable levels
  • DInformation security is seen as a key business partner and enabler

Unlock CISM to see the answer

You've previewed enough free CISM questions. Unlock CISM for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Security Culture#Business Alignment#Strategic Security#Security Governance
Full CISM PracticeBrowse All CISM Questions