New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca CISM Exam - Topic 7 Question 28 Discussion

Actual exam question for Isaca's CISM exam
Question #: 28
Topic #: 7
[All CISM Questions]

An organization's head of information security has been tasked with creating an information security strategy What is the MOST important reason to include business representation?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Sabina
4 months ago
BIA is crucial too, but A makes the most sense.
upvoted 0 times
...
Cordie
4 months ago
Surprised this isn't obvious to everyone!
upvoted 0 times
...
Merri
4 months ago
Wait, isn't identifying risk owners more important?
upvoted 0 times
...
Shala
4 months ago
Totally agree, A is the way to go.
upvoted 0 times
...
Brandon
5 months ago
Gotta align with business goals!
upvoted 0 times
...
Freeman
5 months ago
I recall a practice question about facilitating a business impact analysis. That seems relevant, but I still think aligning with business goals is the top priority.
upvoted 0 times
...
Dell
5 months ago
I feel like establishing an enterprise security architecture might be a key reason as well. It seems like a foundational aspect, but I’m not confident.
upvoted 0 times
...
Selene
5 months ago
I'm not entirely sure, but I remember something about identifying business risk owners being important too. That could help prioritize security efforts.
upvoted 0 times
...
Noble
5 months ago
I think the main reason to include business representation is to support business goals. If the security strategy aligns with what the business wants, it makes sense, right?
upvoted 0 times
...
Tamar
5 months ago
This question seems straightforward, but I want to make sure I understand the concepts correctly before answering.
upvoted 0 times
...
Deandrea
5 months ago
Okay, I think I've got it. Since this is an accrual accounting question, the key is that the revenue should be recognized when the performance obligation is satisfied, which is the shipment date of March 1st.
upvoted 0 times
...
Kris
5 months ago
I distinctly recall the need for regular meetings between both auditor types, so I'm leaning towards option D being incorrect.
upvoted 0 times
...
Doyle
5 months ago
Alright, a 409 response code, that's a conflict error. Based on that, I'd say the KMS key is probably in one of the "Pending" states, like PendingDeletion or PendingImport. I'm not totally sure about Disabled, but I'll make sure to read the question thoroughly and select the correct answers.
upvoted 0 times
...

Save Cancel