exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 272 discussion

Actual exam question from Isaca's CISM
Question #: 272
Topic #: 1
[All CISM Questions]

Which of the following should be the MOST important consideration when reviewing an information security strategy?

  • A. Changes to the security budget
  • B. New business initiatives
  • C. Internal audit findings
  • D. Recent security incidents
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Broesweelies
Highly Voted 1 year, 9 months ago
Selected Answer: B
Changes to the security budget can certainly impact the implementation of an information security strategy, but they should not be the most important consideration when reviewing the strategy. The most important consideration when reviewing an information security strategy should be new business initiatives, as they can introduce new risks and threats that may need to be addressed by the existing security controls and processes. For example, the introduction of new technology, products, or services can bring new vulnerabilities and attack surfaces, and the information security strategy should be reviewed and updated to address these new risks. On the other hand, changes to the security budget, internal audit findings, and recent security incidents can certainly inform the review and update of the information security strategy, but new business initiatives should always be the most important consideration.
upvoted 5 times
...
e891cd1
Most Recent 6 months, 3 weeks ago
Option B ..New Business can bring new issues ..new polices..new culture..new SLA and all that boring stuff.
upvoted 1 times
...
oluchecpoint
9 months, 1 week ago
Selected Answer: B
Option B
upvoted 1 times
...
AlexJacobson
9 months, 2 weeks ago
Selected Answer: B
New business initiatives create new business strategies, goals and objectives, which must be supported by infosec strategy.
upvoted 1 times
...
oluchecpoint
1 year, 1 month ago
D. Recent security incidents When reviewing an information security strategy, the MOST important consideration should be recent security incidents. This is because security incidents are a direct reflection of the current threat landscape and the effectiveness of existing security measures. By analyzing recent security incidents, an organization can identify vulnerabilities, weaknesses, and areas where improvements are needed in its security strategy.
upvoted 1 times
...
richck102
1 year, 4 months ago
B. New business initiatives
upvoted 1 times
...
Pabl0T0rrez
1 year, 5 months ago
D? recent security incidents - the most important consideration when reviewing an information security strategy. This is because recent security incidents can provide valuable insights into the effectiveness of the current strategy and identify areas that need improvement.
upvoted 1 times
...
dedfef
1 year, 7 months ago
Selected Answer: B
obviously B
upvoted 2 times
...
MyKasala
1 year, 9 months ago
Selected Answer: B
I think B
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago