CISM Certified Information Security Manager – Question0010

Successful implementation of information security governance will FIRST require:

A.
security awareness training.
B. updated security policies.
C. a computer incident management team.
D. a security architecture.

Correct Answer: B

Explanation:

Explanation:
Updated security policies are required to align management objectives with security procedures; management objectives translate into policy; policy translates into procedures. Security procedures will necessitate specialized teams such as the computer incident response and management group as well as specialized tools such as the security mechanisms that comprise the security architecture. Security awareness will promote the policies, procedures and appropriate use of the security mechanisms.