exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 219 discussion

Actual exam question from Isaca's CISM
Question #: 219
Topic #: 1
[All CISM Questions]

To address the issue that performance pressures on IT may conflict with information security controls, it is MOST important that:

  • A. the steering committee provides guidance and dispute resolution.
  • B. the security policy is changed to accommodate IT performance pressure.
  • C. IT policies and procedures are better aligned to security policies.
  • D. noncompliance issues are reported to senior management.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
mdmdmd
6 days, 5 hours ago
Selected Answer: C
C seems reasonable
upvoted 1 times
...
Josef4CISM
1 month, 3 weeks ago
C is a better choice than A because: If there are conflicts between IT and Security, it shows that policies and procedures are not aligned. Of course the steering committee can provide further guidance (answer A), but that does not tackle the root cause of the problem. Hence, answer C is more appropriate in this case.
upvoted 1 times
...
nuel_12
9 months ago
Selected Answer: C
B IS THE BEST
upvoted 1 times
...
Thavee
9 months ago
Selected Answer: C
C. IT policies and procedures are better aligned to security policies
upvoted 2 times
...
haskelatchi
10 months, 3 weeks ago
So is the answer C or A?
upvoted 1 times
...
Soleandheel
1 year, 1 month ago
C. IT policies and procedures are better aligned to security policies. Makes more sense to me.
upvoted 2 times
...
richck102
1 year, 7 months ago
A. the steering committee provides guidance and dispute resolution.
upvoted 1 times
...
Saisharan
1 year, 7 months ago
Option C- Option A, which suggests that the steering committee provides guidance and dispute resolution, can also be important in addressing conflicts between performance pressures on IT and information security controls. However, it is not the MOST important action in this context. While the steering committee can play a role in providing guidance and resolving disputes, it is ultimately more effective to establish a foundation where IT policies and procedures are better aligned to security policies.
upvoted 4 times
...
Broesweelies
1 year, 11 months ago
Selected Answer: A
important aspect is that the steering committee provides guidance and dispute resolution, it is important to have a clear and robust governance structure in place that can support IT and security teams in managing these conflicts.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago