Certified in the Governance of Enterprise IT (CGEIT) — Question 30
An enterprise is developing an ethics program, and the ethical standards have been defined. Which of the following should the enterprise do NEXT?
Answer options
- A. Outline and document consequences for noncompliance.
- B. Establish a training and awareness program focused on ethics.
- C. Implement an enterprise-wide employee monitoring program.
- D. Develop key performance indicators (KPIs) for program implementation.
Correct answer: B
Explanation
The correct answer is B, as establishing a training and awareness program is crucial for ensuring that all employees understand the ethical standards. Options A, C, and D are important but are secondary steps that should follow the initial training to ensure compliance and understanding of the ethical framework.