Which of the following is the BEST reason for writing an information security policy?

Which of the following is the BEST reason for writing an information security policy?
A. To support information security governance
B. To reduce the number of audit findings
C. To deter attackers
D. To implement effective information security controls

Download Printable PDF. VALID exam to help you PASS.

2 thoughts on “Which of the following is the BEST reason for writing an information security policy?

    1. The correct answer is A.
      Information security governance refers to the implementation of comprehensive measures, including the management, reporting and accountability of information security risks, to enable companies to fulfill their social responsibilities.
      It is desirable to establish security policies as part of IT control, and to promote enterprise information security measures based on these policies.

      Effective information security controls are based on risk assessments.

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.