CRISC Certified in Risk and Information Systems Control – Question473

Which of the following is the BEST indicator of an effective IT security awareness program?

A.
Decreased success rate of internal phishing tests
B. Number of employees that complete security training
C. Number of disciplinary actions issued for security violations
D. Decreased number of reported security incidents

Correct Answer: D