hiexam
isc · CISSP · Q426 · multiple_choice · topic_1

What is the PRIMARY purpose of creating and reporting metrics for a security awareness, training, and education program?

What is the PRIMARY purpose of creating and reporting metrics for a security awareness, training, and education program?
  • A.Measure the effect of the program on the organization's workforce.
  • B.Make all stakeholders aware of the program's progress.
  • C.Facilitate supervision of periodic training events.
  • D.Comply with legal regulations and document due diligence in security practices.
Explanation
Selected Answer: A A. Measure the effect of the program on the organization's workforce. Creating and reporting metrics for a security awareness, training, and education program allows organizations to assess the effectiveness and impact of the program on their workforce By measuring the effect of the program, organizations can determine if their workforce is gaining knowledge, adopting desired behaviors, and applying security practices effectively.

Reference: examtopics_top_comment

Practice with progress tracking

Sign in to track wrong answers, get spaced-repetition reminders, and run timed exam mode.