Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 1120 discussion

Actual exam question from Isaca's CISA
Question #: 1120
Topic #: 1
[All CISA Questions]

Which of the following would provide the BEST evidence of the effectiveness of mandated annual security awareness training?

  • A. Trending of social engineering test results
  • B. Surveys completed by randomly selected employees
  • C. Number of security incidents
  • D. Results of a third-party penetration test
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
FAGFUR
Highly Voted 1 year ago
Selected Answer: A
Trending social engineering test results over time provides a direct measure of how well employees are applying the security awareness training to identify and resist social engineering attacks. Monitoring the success or failure rates of simulated social engineering tests helps gauge the impact of the training on employees' ability to recognize and respond to security threats. This evidence is more specific and directly related to the training's effectiveness compared to other options such as general surveys, the number of security incidents, or third-party penetration test results.
upvoted 6 times
3008
11 months, 2 weeks ago
Results of a social engineering test: A social engineering test can demonstrate the effectiveness of the training to a certain extent, but it cannot be the best evidence of the training's effectiveness. Social engineering tests are designed to evaluate the effectiveness of security controls and detect vulnerabilities, but they do not provide a comprehensive evaluation of the employees' knowledge and understanding of the security policies.
upvoted 1 times
...
...
RS66
Most Recent 3 months, 2 weeks ago
Selected Answer: A
A. Trending of social engineering test results
upvoted 2 times
...
KAP2HURUF
3 months, 3 weeks ago
Selected Answer: A
Trending of social engineering test results would provide the best evidence of the effectiveness of mandated annual security awareness training. Social engineering tests, such as phishing simulations, directly measure how well employees can recognize and respond to the types of security threats that the training is designed to address. By analyzing the trend over time, an organization can assess whether employees are improving in their ability to identify and avoid social engineering attacks, which would indicate the training's effectiveness.
upvoted 3 times
...
Sibsankar
6 months, 1 week ago
Trending of social engineering test results provides direct feedback on how well all employees are able to recognize and respond to simulated phishing emails, malicious links, or other social engineering tactics. Other hand, randomly selected employees survey does not provide the actual result. So the answer will be A surely
upvoted 2 times
...
Swallows
7 months, 3 weeks ago
Selected Answer: D
Third-party penetration test results confirm the effectiveness of mandated annual security awareness training.
upvoted 1 times
...
3008
11 months, 2 weeks ago
Selected Answer: B
B. Surveys completed by randomly selected employees: Surveys completed by randomly selected employees can provide the best evidence of the training's effectiveness. Surveys can be designed to assess employees' knowledge, understanding, and application of the security policies taught during the training. Randomly selecting employees ensures that the sample is representative of the entire population of employees, which increases the validity of the results. Surveys can also be conducted periodically to track changes in employees' knowledge and behavior over time. Therefore, option B, surveys completed by randomly selected employees, is the best evidence of the training's effectiveness as it provides a comprehensive evaluation of the employees' knowledge and understanding of the security policies.
upvoted 2 times
...
shiowbah
1 year, 1 month ago
A. Trending of social engineering test results
upvoted 4 times
...
swmasinde
1 year, 8 months ago
Selected Answer: B
Surveys/interviews completed by randomly selected employees
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...