CISM · Question #663
CISM Question #663: Real Exam Question with Answer & Explanation
The correct answer is B: Implement an information security governance framework. Implementing an information security governance framework ensures that security objectives are systematically aligned with and integrated into business operations, enabling consistent oversight, accountability, and decision-making across the organization.
Question
Which of the following is the BEST way to ensure the organization's security objectives are embedded in business operations?
Options
- APublish adopted information security standards
- BImplement an information security governance framework
- CDefine penalties for information security noncompliance
- DPerform annual information security compliance reviews
Explanation
Implementing an information security governance framework ensures that security objectives are systematically aligned with and integrated into business operations, enabling consistent oversight, accountability, and decision-making across the organization.
Topics
Community Discussion
No community discussion yet for this question.