CHAPTER 1

Enterprise Governance

This domain includes questions from the following topics:

•  Organizational culture

•  Types of legal and regulatory requirements

•  Organization structure, roles, and responsibilities

•  Ethics and codes of conduct

This chapter covers Certified Information Security Manager (CISM) job practice 1, “Information Security Governance,” part A, “Enterprise Governance.” The entire Information Security Governance domain represents 17 percent of the CISM examination.

Supporting Tasks in the CISM job practice that align with the Information Security Governance / Enterprise Governance domain include

4. Integrate informationsecurity governance into corporate governance.

8. Define, communicate, and monitor information security ...

Get CISM Certified Information Security Manager Practice Exams, Second Edition, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.