CISM Certified Information Security Manager – Question0466

In an organization, information systems security is the responsibility of:

A.
all personnel.
B. information systems personnel.
C. information systems security personnel.
D. functional personnel.

Correct Answer: A

Explanation:

Explanation:
All personnel of the organization have the responsibility of ensuring information systems security-this can include indirect personnel such as physical security personnel. Information systems security cannot be the responsibility of information systems personnel alone since they cannot ensure security. Information systems security cannot be the responsibility of information systems security personnel alone since they cannot ensure security. Information systems security cannot be the responsibility of functional personnel alone since they cannot ensure security.