QuestionQ104
Incident and Risk ManagementA global financial institution recently updated its Information Security Governance and Compliance Program in response to evolving cyber threats and regulatory changes. The revised program includes enhanced policies, updated employee training modules, a restructured cybersecurity team, and increased budget allocation for security tools.
Six months after implementation, a routine audit identified compliance gaps with the new policies, particularly in overseas branches. The institution must now determine the most effective administrative control to achieve stronger adherence to its updated security governance and compliance standards. What should be its primary focus?
- A Conducting regular, comprehensive audits of all branches.
- B Enhancing employee training and awareness programs globally.
- C Restructuring the cybersecurity team to focus on international compliance.
- D Implementing advanced cybersecurity technologies across all branches.
Community Discussion