(ISC)2 Certified in Cybersecurity Practice Exam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the (ISC)2 Certified in Cybersecurity Exam with comprehensive quizzes and extensive question banks. Enhance your skills with detailed explanations and practice tests designed to improve your expertise for the certification exam. Get exam-ready now!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Who is typically responsible for dictating company policy?

  1. The security manager

  2. The Human Resources office

  3. Senior management

  4. Auditors

The correct answer is: Senior management

The responsibility for dictating company policy typically falls to senior management. Senior management sets the strategic direction of the organization and establishes the overarching policies that shape the company’s operations, including cybersecurity policies. Their role is crucial as they balance business objectives with regulatory requirements, risk management, and resource allocation. By aligning company policies with the organization’s goals, senior management ensures that all departments, including security and human resources, operate within a framework that supports compliance and fosters a secure environment. While other roles, such as the security manager, human resources, and auditors, play key functions within the company, they generally focus on specific areas. The security manager may implement and enforce security protocols, human resources may manage policies related to employee conduct or welfare, and auditors assess compliance with established policies and regulations. However, the authority to create and dictate the overall policies resides with senior management, which is why this option is the most appropriate in this context.