Chapter 1: Enterprise Governance
Practice Question Set 1
Q. 1
Answer: A. Security projects are discussed and approved by a steering committee
Explanation: The involvement of a steering committee in the discussion and approval of security projects indicates that the management is committed to security governance. The other options are not as significant.
Q. 2
Answer: C. The complexity of the organizational structure
Explanation: The information security governance model is primarily impacted by the complexity of the organizational structure. The organizational structure includes the organization's objectives, vision and mission, hierarchy, leadership structure, different function units, and different product lines. The other options are not as significant.
Q. 3
Answer: B. The development of security policies
Explanation: Security policies indicate the intent of the management. The security architecture and various procedures are designed based on these...