Which of the following is MOST important to include in an information security strategy?
A.
Stakeholder requirements
B.
Risk register
C.
Industry benchmarks
D.
Regulatory requirements
The Answer Is:
A
This question includes an explanation.
Explanation:
Stakeholder requirements are the most important to include in an information security strategy, as they reflect the business needs, objectives, and expectations of the organization and its key stakeholders. Stakeholder requirements also help to align the information security strategy with the enterprise governance and the organizational culture. Risk register, industry benchmarks, and regulatory requirements are important inputs for the information security strategy, but they are not the most important to include.