Certified Information Security Manager (CISM) — Question 658
The information security manager of a multinational organization has been asked to consolidate the information security policies of its regional locations. Which of the following would be of GREATEST concern?
Answer options
- A. Varying threat environments
- B. Disparate reporting lines
- C. Conflicting legal requirements
- D. Differences in work culture
Correct answer: C
Explanation
The correct answer is C, as conflicting legal requirements can lead to significant compliance issues and potential legal liabilities for the organization. While varying threat environments, disparate reporting lines, and differences in work culture are important, they do not pose the same level of risk in terms of legal compliance and regulatory obligations.