Your board of directors wants to adopt a widely recognized framework from a professional association to unify enterprise goals and technology oversight in order to measure and improve security controls across various business processes. Which approach achieves this goal effectively?
Adopt a privacy rule with a focus on handling personal information and administrative documentation
Use a standard mandating financial data controls and vendor contract reviews for payment transactions
Implement a set of guidelines that defines responsibilities, measurable targets, and control requirements across multiple domains to strengthen governance
Follow an agile software development reference that highlights frequent feature releases and code integration events
A recognized approach that merges broader business objectives with IT processes establishes a consistent method for planning, implementing, and reviewing security efforts alongside operational goals. Other options concentrate on narrow or unrelated areas, such as data protection only, software development practices, or payment-specific tasks, and do not provide comprehensive governance of the larger enterprise environment.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are some examples of widely recognized frameworks that unify enterprise goals and technology oversight?
Open an interactive chat with Bash
What makes a framework effective in enhancing security governance across an enterprise?
Open an interactive chat with Bash
How is a framework like COBIT different from privacy or financial-specific standards?