I like C - Senior management approval of information security policies. This is stated over and over again in the CISM book, getting leadership buy in. My two cents.
Unclear question. What type of policies the senior management approved? FIrewall? Risk response plan? nooooo... It would be C, if the approval is for business objectives.
The word culture (governance) is much broader than policies.
i went with C first, but then after a little thinking having policies enforced doesnt promote for a culture, it is training and awareness that does and changes the mindset
A. Mature information security awareness training across the organization
Having senior management approve policies is not sufficient for building a culture.
Security culture is dependent on employee awareness and acceptance . Not all employee reads and understand policy even when enforced but through training and awareness understanding and abiding with policy becomes easier and practical
Leaning towards A on this one. The issue with C is that it references just the approval for the policies. For management buy in to be effective, it has to be total support of the entire security program, not just a stamp of approval on the policy documents. However, a robust training program fosters a security culture where everyone in the organization understands the importance of security and takes steps to protect the organization's data and systems.
upvoted 4 times
...
This section is not available anymore. Please use the main Exam Page.CISM Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
CarlLimps
Highly Voted 1 year, 10 months agoddharia94
1 year, 6 months agoThavee
9 months agoThavee
Most Recent 9 months agoyottabyte
9 months, 4 weeks agoMarcovic00
1 year, 1 month agooluchecpoint
1 year, 4 months agoAaronS1990
1 year, 4 months agorichck102
1 year, 6 months agowello
1 year, 7 months agoAz900500
1 year, 7 months agoGr3yGh0sT
1 year, 8 months ago