CISA Certified Information Systems Auditor – Question0609

In an organization where IT is critical to its business strategy and where there is a high level of operational dependence on IT, senior management commitment to security is BEST demonstrated by the:

A.
reporting line of the chief information security officer (CISO).
B. segregation of duties policy.
C. existence of an IT steering committee.
D. size of the IT security function.

Correct Answer: C