Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca CISA Exam - Topic 2 Question 112 Discussion

Actual exam question for Isaca's CISA exam
Question #: 112
Topic #: 2
[All CISA Questions]

Which of the following is MOST critical to the success of an information security program?

Show Suggested Answer Hide Answer
Suggested Answer: A

The most critical factor for the success of an information security program is management's commitment to information security. Management's commitment to information security means that the senior management supports, sponsors, funds, monitors and enforces the information security program within the organization. Management's commitment to information security also demonstrates leadership, sets the tone and culture, and establishes the strategic direction and objectives for information security. User accountability for information security, alignment of information security with IT objectives, and integration of business and information security are also important factors for the success of an information security program, but they are not as critical as management's commitment to information security, as they depend on or derive from it.Reference:Info Technology and Systems Resources | COBIT, Risk, Governance ... - ISACA,IT Governance and Process Maturity


Contribute your Thoughts:

0/2000 characters
Princess
4 days ago
I’m leaning towards option B, but I wonder if user accountability might actually play a bigger role in the long run.
upvoted 0 times
...
Virgilio
9 days ago
I remember a practice question that emphasized the alignment of security with business goals. It feels like that could be really important too.
upvoted 0 times
...
Phillip
14 days ago
I think management's commitment to information security is crucial, but I'm not entirely sure if it's the most critical factor.
upvoted 0 times
...

Save Cancel