Multiple Choice
Which one of the following can be said about IT security policies?
A) IT security policies define the scope and overall expectation for the company's information security program.
B) IT security policies discourage standardization and integration.
C) IT security policies require an IT-only perspective.
D) IT security policies complicate the decision-making process.
E) IT security policies are loose to allow for many choices.
Correct Answer:

Verified
Correct Answer:
Verified
Q5: This IT governance archetype consists only of
Q19: The combinations of people to whom decision
Q20: As a result of Sarbanes-Oxley, IT managers
Q27: The decision about approval and justification of
Q35: The global nature of business today makes
Q37: What act was passed in 2002 in
Q38: Match the SoX compliance methodology with its
Q40: After its PlayStation Network service was compromised,Sony
Q44: All of the following are frameworks for
Q44: Match the allocation of decision rights below