Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 80 discussion

Actual exam question from ISC's CISSP
Question #: 80
Topic #: 1
[All CISSP Questions]

Which of the following is performed to determine a measure of success of a security awareness training program designed to prevent social engineering attacks?

  • A. Employee evaluation of the training program
  • B. Internal assessment of the training program's effectiveness
  • C. Multiple choice tests to participants
  • D. Management control of reviews
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
franbarpro
Highly Voted 2 years, 1 month ago
Selected Answer: B
Yep "B"
upvoted 6 times
jackdryan
1 year, 6 months ago
B is correct
upvoted 1 times
...
...
somsom
Most Recent 1 month ago
Obviously B
upvoted 1 times
...
Jenkins3mol
6 months, 3 weeks ago
Selected Answer: B
my AI told me that B is correct, and I'm convinced. I chose D previously, and now I felt foolish.
upvoted 1 times
...
noh_ssiw_l
1 year, 2 months ago
which one is vague ohh i mean which one encompasses the other and that's it!!!!! B. for me
upvoted 3 times
...
Bach1968
1 year, 4 months ago
Selected Answer: B
The correct answer is option B: Internal assessment of the training program's effectiveness. To determine the measure of success of a security awareness training program designed to prevent social engineering attacks, conducting an internal assessment of the program's effectiveness is essential. This assessment involves evaluating the program's impact on employees' knowledge, behavior, and ability to recognize and respond to social engineering attacks. It helps determine whether the training program is achieving its intended objectives and identifies areas for improvement.
upvoted 3 times
...
hgamboa
1 year, 4 months ago
Selected Answer: C
B sounds ambiguous to me since it's not stating any kind of KPI to determine the program success. According to the Official Study Guide 9th edition pag 100 " In some circumstances, a quiz or test can be administered to workers inmediately after training session. A follow up quiz should be performed three to six months later to see if they retain the information..."
upvoted 1 times
...
babaseun
1 year, 6 months ago
Selected Answer: A
Training evaluation is important for a variety of reasons. It can help identify areas where training is needed, assess the effectiveness of training, and determine whether training is having the desired impact. Training evaluation can also help improve the quality of future training programs.
upvoted 2 times
...
Seron23
1 year, 6 months ago
How will you measure internal effectiveness??
upvoted 1 times
...
oudmaster
1 year, 11 months ago
What the assessment will do? ! Every training awareness should include test at the end to evaluate every candidate how well they benefit of the training. This way you can partially measure the effectiveness of the training. The other part is related to how these trained staff react to social engineering attacks.
upvoted 1 times
BoZT
1 year, 3 months ago
Employees can remember or simply take notes on the test answers. Internal assessment can include phishing simulation.
upvoted 1 times
...
...
Jamati
2 years ago
Selected Answer: B
I'll go with B on this one.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...