CISM Certified Information Security Manager – Question1134

Which would be the BEST recommendation to protect against phishing attacks?

A.
Install an antispam system
B. Publish security guidance for customers
C. Provide security awareness to the organization's staff
D. Install an application-level firewall

Correct Answer: B

Explanation:

Explanation: Customers of the organization are the target of phishing attacks. Installing security software or training the organization’s staff will be useless. The effort should be put on the customer side.