Certified Chief Information Security Officer (CCISO) — Question 95
Scenario: As you begin to develop the program for your organization, you assess the corporate culture and determine that there is a pervasive opinion that the security program only slows things down and limits the performance of the `real workers.`
Which group of people should be consulted when developing your security program?
Answer options
- A. Peers
- B. End Users
- C. All of the above
- D. Executive Management
Correct answer: C
Explanation
The correct choice is C because involving both peers and end users, along with executive management, ensures a comprehensive view of the security program's impact across the organization. Peers can provide insights from their experience, end users can share how security measures affect their workflow, and executive management can align security goals with business objectives.