Which of the following is the BEST indication of an effective information security program?
Comprehensive and Detailed Step-by-Step Explanation:
An effective information security program aims to manage risks to acceptable levels while supporting business objectives.
A . Risk is treated to an acceptable level: This is the BEST answer as it directly reflects the program's success in mitigating risks within the organization's tolerance levels.
B . The number of security incidents reported by staff has increased: An increase in reported incidents might indicate improved awareness but does not necessarily reflect overall effectiveness.
C . Key risk indicators (KRIs) are established: KRIs are important for monitoring risks but do not indicate whether risks are being effectively managed.
D . Policies are reviewed and approved by senior management: While essential, this action alone does not demonstrate the program's effectiveness.
Mozelle
6 months agoLakeesha
6 months agoKirk
6 months agoGilma
7 months agoSonia
7 months agoDeangelo
7 months agoStefany
7 months agoMelda
7 months agoTish
8 months agoNoel
8 months agoAlpha
8 months agoKing
8 months agoFranchesca
8 months agoSherita
1 year agoJina
1 year agoAvery
1 year agoDorian
1 year agoAlesia
1 year agoWenona
1 year agoJeannetta
1 year agoKiley
1 year agoEdelmira
1 year agoJulene
1 year agoCassi
1 year agoShayne
1 year agoFannie
1 year agoBarrett
1 year agoRodolfo
1 year agoRaina
1 year ago