CISM Certified Information Security Manager – Question0045

Which of the following is the MOST important information to include in a strategic plan for information security?

A.
Information security staffing requirements
B. Current state and desired future state
C. IT capital investment requirements
D. information security mission statement

Correct Answer: B

Explanation:

Explanation: It is most important to paint a vision for the future and then draw a road map from the stalling point to the desired future state. Staffing, capital investment and the mission all stem from this foundation.