CISA Certified Information Systems Auditor – Question0458

The MOST useful technique for maintaining management support for the information security program is:

A.
identifying the risks and consequences of failure to comply with standards
B. benchmarking the security programs of comparable organizations
C. implementing a comprehensive security awareness and training program
D. informing management about the security of business operations

Correct Answer: A