Which term refers to controls implemented to administer an organization's assets and personnel, including policies, procedures, standards, baselines, and guidelines established by management?

Study for the CompTIA SecurityX Test. Equip yourself with comprehensive flashcards and multiple choice questions that include hints and explanations. Gear up for your certification exam!

Multiple Choice

Which term refers to controls implemented to administer an organization's assets and personnel, including policies, procedures, standards, baselines, and guidelines established by management?

Explanation:
This item focuses on governance and oversight controls that management implements to run the organization’s assets and people. These controls define how resources are managed, who is responsible, and what rules must be followed, using policies, procedures, standards, baselines, and guidelines that management establishes and enforces. That broad, management-driven set of controls is best described as management control, since it covers the overall framework and direction provided by leadership. Administrative controls are the typical category that includes policies and procedures, but the wording here emphasizes that these measures are established by management across the organization, which aligns with the broader concept of management control. Organizational security policies refer to the policies themselves, not the full suite of controls; issue-specific policies address particular areas rather than the entire asset-and-personnel governance.

This item focuses on governance and oversight controls that management implements to run the organization’s assets and people. These controls define how resources are managed, who is responsible, and what rules must be followed, using policies, procedures, standards, baselines, and guidelines that management establishes and enforces. That broad, management-driven set of controls is best described as management control, since it covers the overall framework and direction provided by leadership.

Administrative controls are the typical category that includes policies and procedures, but the wording here emphasizes that these measures are established by management across the organization, which aligns with the broader concept of management control. Organizational security policies refer to the policies themselves, not the full suite of controls; issue-specific policies address particular areas rather than the entire asset-and-personnel governance.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy