Which of the following is the BEST indication of an effective information security program?
Comprehensive and Detailed Step-by-Step Explanation:
An effective information security program aims to manage risks to acceptable levels while supporting business objectives.
A . Risk is treated to an acceptable level: This is the BEST answer as it directly reflects the program's success in mitigating risks within the organization's tolerance levels.
B . The number of security incidents reported by staff has increased: An increase in reported incidents might indicate improved awareness but does not necessarily reflect overall effectiveness.
C . Key risk indicators (KRIs) are established: KRIs are important for monitoring risks but do not indicate whether risks are being effectively managed.
D . Policies are reviewed and approved by senior management: While essential, this action alone does not demonstrate the program's effectiveness.
Mozelle
3 months agoLakeesha
3 months agoKirk
3 months agoGilma
4 months agoSonia
4 months agoDeangelo
4 months agoStefany
4 months agoMelda
4 months agoTish
5 months agoNoel
5 months agoAlpha
5 months agoKing
5 months agoFranchesca
5 months agoSherita
1 year agoJina
1 year agoAvery
1 year agoDorian
11 months agoAlesia
11 months agoWenona
11 months agoJeannetta
12 months agoKiley
1 year agoEdelmira
1 year agoJulene
1 year agoCassi
1 year agoShayne
1 year agoFannie
1 year agoBarrett
1 year agoRodolfo
1 year agoRaina
1 year ago