exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 939 discussion

Actual exam question from Isaca's CISM
Question #: 939
Topic #: 1
[All CISM Questions]

Which of the following is MOST effective in gaining support for the information security strategy from senior management?

  • A. Cost-benefit analysis results
  • B. Third-party security audit results
  • C. Business impact analysis (BIA) results
  • D. A major breach at a competitor
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
david124
5 months, 2 weeks ago
Selected Answer: C
C , BIA
upvoted 2 times
...
AlexJacobson
1 year, 2 months ago
Selected Answer: A
Senior management is all about the dollar value. BIA will tell you what needs to be protected most, but this question is about gaining support, so you have to show VALUE of implementing the strategy (and this is done through CBA).
upvoted 2 times
...
Uncle_Lucifer
1 year, 4 months ago
Selected Answer: A
in this situation I don't believe BIA is correct. BIA identifies criticalities. How can that info help management? it does not tell why u need to protect he assets or make further decisons. However, cost-benefit nalysis shows enough data to make decisions.
upvoted 3 times
...
Soleandheel
1 year, 4 months ago
It's always about the business impact when it comes to senior management.
upvoted 1 times
...
Cyberbug2021
1 year, 4 months ago
Selected Answer: C
Business impact trumps everything
upvoted 2 times
...
devilend
1 year, 5 months ago
A. Cost-benefit analysis results
upvoted 1 times
...
richck102
1 year, 6 months ago
Selected Answer: A
A. Cost-benefit analysis results
upvoted 3 times
...
koala_lay
1 year, 6 months ago
Selected Answer: C
C: Business impact analysis (BIA) results as the most effective way to gain support from senior management for an information security strategy. Business impact analysis helps identify the potential risks and impact of various security threats to an organization. It provides a comprehensive assessment of the potential costs and consequences of a security breach, including financial losses, reputation damage, legal implications, and operational disruptions. By presenting the results of a BIA, you can effectively demonstrate the potential risks and their impact on the business, which can help senior management understand the importance of investing in information security measures.
upvoted 4 times
...
wickhaarry
1 year, 6 months ago
A. Cost-benefit analysis results
upvoted 1 times
...
oluchecpoint
1 year, 7 months ago
Selected Answer: C
C. Business impact analysis (BIA) results Business impact analysis (BIA) results provide a clear understanding of the potential impact of security incidents on the organization's operations, reputation, and bottom line. It helps senior management see the direct connection between information security and the overall business continuity and success. By presenting BIA results, you can effectively communicate the importance of investing in information security measures and obtaining senior management's support for your security strategy. It demonstrates how security measures can mitigate risks and protect the organization from costly disruptions
upvoted 2 times
...
Oscar_Law
1 year, 7 months ago
Should be C
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago