exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 377 discussion

Actual exam question from Isaca's CISM
Question #: 377
Topic #: 1
[All CISM Questions]

When considering whether to adopt bring your own device (BYOD), it is MOST important for the information security manager to ensure that:

  • A. the applications are tested prior to implementation
  • B. security controls are applied to each device when joining the network
  • C. users have read and signed acceptable use agreements
  • D. business leaders have an understanding of security risks
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Highly Voted 1 year ago
Selected Answer: B
BYOD refers to a policy that allows employees to use their personal devices to access corporate resources, such as email, files, and applications. This can increase productivity and reduce costs, but it also introduces significant security risks. Therefore, it is essential for the information security manager to ensure that appropriate security controls are in place to protect the organization's data and systems. One of the most important security controls for BYOD is to apply security controls to each device when joining the network. This can include requirements for strong passwords, encryption of data in transit and at rest, and installation of security software such as mobile device management (MDM) software. By applying these security controls, the information security manager can help to ensure that the devices accessing the organization's resources are secure and that the organization's data is protected.
upvoted 7 times
8 months ago
this is a chatgpt answer, not the right answer
upvoted 2 times
9 months ago
You need resource to implement controls for that the first step is to get senior management buy-in by ensuring they understand the risk. So D.
upvoted 1 times
Highly Voted 9 months, 1 week ago
Selected Answer: D
When considering the adoption of bring your own device (BYOD), the information security manager needs to ensure that security risks are well understood and mitigated. Therefore, the most important consideration is that business leaders have an understanding of security risks.
upvoted 6 times
Most Recent 3 months, 3 weeks ago
Please pay attention to keywords: Considering whether. It means decision is not taken yet, so what do we need to do? Make sure leaders understand the risk before we decide
upvoted 3 times
6 months, 2 weeks ago
Selected Answer: D
D -The business owners must understand a risk exists whether controls are implemented or not. Once they accept this you can set about your mitigation efforts.
upvoted 1 times
8 months ago
Answer should be B, refer to the question 163 in the review manual V10. similar question as the official study guide
upvoted 1 times
4 months ago
I see that question (S2-163) - but my reading of this is that D should be first. You need to RA and present to senior mgmt. Controls come later.
upvoted 1 times
7 months, 3 weeks ago
I chose B as well personally. just curious, are you able to see all of the cisa questions? I'm getting not available for a decent amount
upvoted 1 times
8 months, 4 weeks ago
D. business leaders have an understanding of security risks
upvoted 1 times
9 months, 1 week ago
Selected Answer: D
Business leaders needs to understand the risk
upvoted 3 times
11 months, 2 weeks ago
Selected Answer: D
the answer is D. You have to know the risk involved with the activity
upvoted 5 times
1 year, 1 month ago
Selected Answer: C
Business leaders can have the understanding of the risk but if users do not read and sign the acceptable agreement, the greater risk is still there. I choose C
upvoted 4 times
Community vote distribution
A (35%)
C (25%)
B (20%)
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

Loading ...
Someone Bought Contributor Access for:
London, 1 minute ago