- Home
- All questions
- Question 64
CISM study material · question 64 of 1000
A security manager notices that individuals with assigned security responsibilities face no consequence when they simply fail to act. Which of NIST's keys to good governance is being neglected?
Show the answer
Answer: B. Holding those responsible for security accountable for their actions or lack of actions
Among the practices NIST lists as critical, individuals responsible for information security within the organisation should be held accountable for their actions or lack of actions.
Source: NIST SP 800-100 (NIST) — Sec. 2.3 Challenges and Keys to Success