| « Using the Work of Others in Sarbanes Oxley Compliance | Change Documents in SAP MM R/3 - Materials Management » |
Information Security Governance Projects - CISM Exam Questions
Information Security Governance Projects - CISM Exam Questions
Q). Which of the following would BEST indicate the success of information security governance within an organization ?
A. The steering committee approves all security projects.
B. The security policy manual is distributed to all managers.
C. Security procedures are accessible on the company intranet.
D. The corporate network utilizes multiple screened subnets.
Answer: The correct answer is "A". The existence of a steering committee which is responsible for approving all security projects would indicate a good governance program. The mere availability of policies and procedures does not ensure that they are current. A corporate network may utilize good security practices but this is not governance. All the other answers are incorrect.
Related Posts
Purging Sensitive Data
Application Level Gateway
Man in the Middle Attack
Smurf Attack
Feedback awaiting moderation
This post has 35 feedbacks awaiting moderation...