Certified Information Systems Security Professional – CISSP – Question351

Which of the following MUST a security policy include to be effective within an organization?

A.
A list of all standards that apply to the policy
B. Owner information and date of last revision
C. Disciplinary measures for non-compliance
D. Strong statements that clearly define the problem

Correct Answer: B