Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 755 discussion

Actual exam question from Isaca's CISM
Question #: 755
Topic #: 1
[All CISM Questions]

What is the PRIMARY benefit to an organization when information security program requirements are aligned with employment and staffing processes?

  • A. Access is granted based on task requirements.
  • B. Information assets are classified appropriately.
  • C. Security staff turnover is reduced.
  • D. Security incident reporting procedures are followed.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Broesweelies
Highly Voted 1 year, 9 months ago
Selected Answer: A
Boomer is correct, it is A, I was talking about security staff.
upvoted 8 times
...
Boomers
Highly Voted 1 year, 9 months ago
Selected Answer: A
Answer should be A. C is talking about only security staff. Access is a big security program area to handle. The employment and Hiring process is a good venue to provide birthright access to new hires.
upvoted 7 times
...
Infosecnerd
Most Recent 2 months, 4 weeks ago
A. When information security program requirements are aligned with employment and staffing processes, it ensures that access to systems and information is appropriately granted based on the specific roles and responsibilities of employees. This alignment helps to enforce the principle of least privilege, where individuals are only given access to the information and resources necessary for their job functions. While reducing security staff turnover (option C) could be a benefit, it is not the primary benefit. The key objective is to ensure that access controls are properly implemented and managed according to the tasks that employees are expected to perform, which directly supports the security of the organization.
upvoted 1 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: A
A. Access is granted based on task requirements. Aligning information security program requirements with employment and staffing processes ensures that individuals are granted access to specific resources and information based on their job roles and responsibilities. This helps in ensuring that only authorized personnel have access to sensitive data and systems, reducing the risk of data breaches and unauthorized access. This aligns with the principle of least privilege, where individuals are granted access only to the resources necessary for their specific tasks.
upvoted 1 times
...
richck102
1 year, 4 months ago
A. Access is granted based on task requirements.
upvoted 1 times
...
Broesweelies
1 year, 9 months ago
Selected Answer: C
C. Security staff turnover is reduced - When information security program requirements are aligned with employment and staffing processes, it helps ensure that new hires have the necessary skills, knowledge, and qualifications for their security-related roles. This can reduce turnover and help maintain a stable and skilled security workforce.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...