Information Security Governance - Security Strategy Development

10 important questions on Information Security Governance - Security Strategy Development

What is the purpose of a strategy?

To develop a roadmap of activities to transform a process from its current state to a desired future state

What is the key part of an information security strategy?

The achievement of a desired risk level

How is a desired risk level also called?

Risk Tolerance or Risk appetite
  • Higher grades + faster learning
  • Never study anything twice
  • 100% sure, 100% understanding
Discover Study Smart

Which tool can be used by a strategist to develop a roadmap for a security manager

SWOT analysis

What is the first step when developing an information security management program

Clarify organizational purpose for creating the program

What is most helpful to management in understanding at a very high level the treats, probabilities and existing controls

A Risk Management

What should a security manager conduct first to highlight to management the importance of network security

A Risk Assessment

Which product could provide a strategist a great deal of insights into risk analysis activities

Risk Ledger

What is the best justification to convince management to invest in an information security program?

Increased business value

Which two types of input must be  considered before developing a strategy

Risk and Threat assessments

The question on the page originate from the summary of the following study material:

  • A unique study and practice tool
  • Never study anything twice again
  • Get the grades you hope for
  • 100% sure, 100% understanding
Remember faster, study better. Scientifically proven.
Trustpilot Logo