An organization's Information Security Policy is of MOST importance because
A.
it communicates management’s commitment to protecting information resources
B.
it is formally acknowledged by all employees and vendors
C.
it defines a process to meet compliance requirements
D.
it establishes a framework to protect confidential information
The Answer Is:
A
This question includes an explanation.
Explanation:
Purpose of an Information Security Policy:
The policy serves as a foundational document that articulates the organization’s commitment to safeguarding its information assets.
It demonstrates management’s intent and direction toward implementing robust security measures.
Management Commitment:
As per EC-Council CCISO, management’s visible commitment to security is essential for creating a culture of compliance and accountability across the organization.
Policies provide a basis for decision-making, risk management, and incident response.
Supporting Reference:
The CCISO program outlines that a well-documented and communicated information security policy ensures clarity in roles and responsibilities, fostering alignment among all stakeholders, including employees and vendors.
712-50 PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"