The correct answer is B. Management’s commitment to information security. Management’s commitment to information security is the most critical factor for the success of an information security program, as it provides the leadership, support, and resources needed to establish and maintain a secure environment. Management’s commitment to information security can be demonstrated by:
Setting the vision, mission, and goals for information security, and aligning them with the organization’s strategies and objectives1.
Establishing and enforcing the policies, standards, and procedures for information security, and ensuring compliance with relevant laws and regulations1.
Allocating sufficient budget, staff, and technology for information security, and investing in training and awareness programs2.
Promoting a culture of security within the organization, and engaging with stakeholders and partners to foster trust and collaboration2.
Submit