exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 565 discussion

Actual exam question from Isaca's CISM
Question #: 565
Topic #: 1
[All CISM Questions]

Which of the following is MOST important to consider when developing a business case to support the investment in an information security program?

  • A. Senior management support
  • B. Results of a risk assessment
  • C. Results of a cost-benefit analysis
  • D. Impact on the risk profile
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Adabach
3 days, 14 hours ago
Selected Answer: B
From a CISM perspective, B. Results of a risk assessment is the MOST important initial consideration because it provides the essential evidence and context to build a solid, risk-aligned business case for any new security initiative.
upvoted 1 times
...
xcjxcj
11 months, 1 week ago
A covers C or C covers A? Ultimate goal is to win management support, to win it, present cost-benefit.
upvoted 1 times
...
Soleandheel
1 year, 2 months ago
A. Senior management Support .....You know if you can win senior management's support, you will get the investment you're looking for. The most important consideration to keep in mind is A. Senior Management Support. The rest doesn't matter as long as you can win their support. Don't let Chatgpt fool you on this one.
upvoted 1 times
...
Marcovic00
1 year, 2 months ago
Selected Answer: C
Business case will be presented to senior management
upvoted 1 times
...
oluchecpoint
1 year, 5 months ago
Selected Answer: A
Why is option A not an answer. It stated this is still in developmental stage, they are still drafting the business case.
upvoted 2 times
AlexJacobson
1 year ago
Read the question more carefully. You are presenting the business case to Senior management with a goal of getting their support. Therefore you are hoping you will get A by putting C in your business case.
upvoted 4 times
...
...
paul1394
1 year, 5 months ago
Selected Answer: C
he most important thing to consider when developing a business case to support the investment in an information security program is the results of a cost-benefit analysis. This is because a cost-benefit analysis will help to quantify the benefits of the investment and to compare them to the costs. This information is essential for convincing stakeholders to invest in the information security program.
upvoted 4 times
...
Goseu
1 year, 7 months ago
Selected Answer: C
C with closed eyes .
upvoted 2 times
...
jennarink13
1 year, 7 months ago
C. CBA. Risk assessment facilitates the prioritization of risks. CBA is the analysis used to prepare business case.
upvoted 2 times
...
richck102
1 year, 7 months ago
Selected Answer: B
B. Results of a risk assessment
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...