The initial step in establishing an information security
program is the:

A. development and implementation of an information security
standards manual.

B. performance of a comprehensive security control review by
the IS auditor.

C. adoption of a corporate information security policy
statement.

D. purchase of security access control software.

Answer Posted / guest

Answer: C

A policy statement reflects the intent and support provided
by executive management for proper security and establishes
a starting point for developing the security program.

Is This Answer Correct ?    8 Yes 0 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

WHICH OF THE FOLLOWING IS OFTEN AN ADVANTAGE OF USING PROTOTYPING GOR DYDTEM DVELOPMENT

2975


purchase orders issued to vendors have been authorized as per the authorization matrix

1205