nerdexam
Isaca

CISM · Question #838

Which of the following BEST indicates effective information security governance?

The correct answer is C. Regular steering committee meetings. Effective governance is best indicated by active oversight, decision-making, and accountability - most clearly demonstrated through regular information security steering committee meetings that provide direction, prioritize initiatives, and monitor performance.

Submitted by wei.xz· Apr 18, 2026Information Security Governance

Question

Which of the following BEST indicates effective information security governance?

Options

  • AAvailability of information security policies
  • BOrganization-wide attendance at annual security training
  • CRegular steering committee meetings
  • DRegular testing of the security incident response plan

How the community answered

(26 responses)
  • A
    4% (1)
  • B
    15% (4)
  • C
    77% (20)
  • D
    4% (1)

Explanation

Effective governance is best indicated by active oversight, decision-making, and accountability - most clearly demonstrated through regular information security steering committee meetings that provide direction, prioritize initiatives, and monitor performance.

Topics

#Information Security Governance#Governance Mechanisms#Steering Committee#Strategic Oversight

Community Discussion

No community discussion yet for this question.

Full CISM Practice