148k views
1 vote
The chief executive officer (CEO) usually approves and signs the information security program charter because the charter establishes the responsibility for information security within the organization. However, it is not important that senior leadership expresses support for the information security program. However, it is most important that the chief information security officer (CISO) approves and issues the framework for IT security policies.

1. True
2. False

1 Answer

4 votes

Answer:

The answer is 1. True. it is important that the chief information security officer (CISO) approves and issues the framework for IT security policies.

Step-by-step explanation:

Technical functions in a company demands professional expertise and in the case of cyber security, the responsibility is placed on the chief information officer.

The chief information security officer (CISO) is responsible for the security of information assets and technologies in order to sustain the vision of the organization and guard against theft and unauthorized intrusion.

Based on the responsibility above, The CISO is the staff with the competence to develop the framework for IT security policies.

Whereas the chief executive officer (CEO) approves and signs the information security program charter, when it comes to information security, it is important that the chief information security officer (CISO) approves and issues the framework for IT security policies.

User Dfrankow
by
5.0k points