Isaca Certified Information Systems Auditor CISA Question # 259 Topic 26 Discussion

Isaca Certified Information Systems Auditor CISA Question # 259 Topic 26 Discussion

CISA Exam Topic 26 Question 259 Discussion:
Question #: 259
Topic #: 26

An IS auditor concludes that an organization has a quality security policy. Which of the following is MOST important to determine next? The policy must be:


A.

well understood by all employees.


B.

based on industry standards.


C.

developed by process owners.


D.

updated frequently.


Get Premium CISA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.