Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 567 discussion

Actual exam question from Isaca's CISA
Question #: 567
Topic #: 1
[All CISA Questions]

An IS auditor concludes that an organization has a quality security policy. Which of the following is MOST important to determine next? The policy must be:

  • A. based on industry standards.
  • B. well understood by all employees.
  • C. updated frequently.
  • D. developed by process owners.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Vima234
2 months, 2 weeks ago
Selected Answer: D
The option is D as the qstn is asked for the next to confirm,not the most critical one.
upvoted 1 times
...
Vima234
2 months, 2 weeks ago
The option is D as the qstn is asked for the next to confirm,not the most critical one.
upvoted 1 times
...
3008
11 months, 4 weeks ago
Selected Answer: B
"well understood by all employees" is the most critical factor to ensure the effectiveness of the security policy. If the policy is not well understood, it will not be followed, and the organization's security posture will be weak.
upvoted 1 times
...
Changwha
1 year, 3 months ago
B. well understood by all employees.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...