Information needs of Board of Directors Correct Answer: Organizational reporting, Trend analysis, High-level, comprehensive risk assessment, Inventory of information assets Business impact analyses (BIA)
Key Responsi
...
Information needs of Board of Directors Correct Answer: Organizational reporting, Trend analysis, High-level, comprehensive risk assessment, Inventory of information assets Business impact analyses (BIA)
Key Responsibilities of Board of Directors Correct Answer: Provide strategic direction, Approve policies, Identify key assets, Verify appropriate protection levels and
priorities, Define, communicate and enforce penalties
for noncompliance with security protocols
Activities/Behaviors of Board of Directors Correct Answer: Set tone conducive to effective governance, Effective communication with Executive Management, Demonstrate legal and ethical responsibility with regard to organizational assets, Maintain confidentiality of critical information
Information needs of Executive Management Correct Answer: Organizational reporting, Trend analysis, Comprehensive risk assessment, Inventory of information assets
Key Responsibilities of Executive Management Correct Answer: Ensure availability and effective utilization of support resources, infrastructure, and organizational functions, Define the organization's information security program and management, Provide education and guidance to the organization's executive management team, Present options and decision support information (Advisor)
Activities/Behaviors of Executive Management Correct Answer: Set tone of importance as relates to protection of organizational assets, Demonstrate visibility within the information security organization, Communicate with and involve relevant partners (i.e. risk management) in key business activities and decisions
Information needs of Senior Information Security Management Correct Answer: Organizational reporting, Trend analysis, Comprehensive risk assessment Inventory of information assets
Key Responsibilities of Senior Information Security Management Correct Answer: All physical and digital security matters, Develop the security strategy, Oversee the security program and
initiatives, Coordinate with business process owners
for ongoing alignment, Ensure that risk and business impact assessments are conducted, Develop risk mitigation strategies, Enforce policy and regulatory compliance, Monitor the utilization and effectiveness of
security resources, Develo
[Show More]