CISM Certified Information Security Manager – Question1018

Which of the following is the MOST effective way to ensure security policies are relevant to organizational business practices?

A.
Integrate industry best practices
B. Obtain senior management sign-off
C. Conduct an organization-wide security audit
D. Leverage security steering committee contribution

Correct Answer: D