WGU C727 - Cybersecurity
Management I – Strategic EXAM
ELABORATIONS QUESTIONS AND
VERIFIED ANSWERS 2025 UPDATE
| 100% SOLVED
Save
Terms in this set (123)
, COBIT 5 is an information security
management system (ISMS) backed
by ISACA, an international
professional association serving a
broad range of IT governance
professionals and a framework
accepted by many assurance and
governance professionals.
---
begins with principles, policies, and
frameworks as mechanisms acting as
hand-rails guiding desired behavior
for day-to-day management.
Processes describe an organized set
of practices and activities to achieve
certain objectives and produce a set
of outputs in support of achieving
cybersecurity objectives aligned to
enterprise objectives.
Organizational structures are the
key decision-making entities in an
enterprise. Culture, ethics, and
behavior of individuals and of the
COBIT 5
enterprise are a key success factor
enablers (CH1)
in governance and management
, activities. Information is organization
pervasive and includes all
information produced and used by
the enterprise. Information is not
only required to keep the
organization running and well
governed, but is often the key
product of the operational
enterprise. Services, infrastructure,
and applications include the
infrastructure, technology, and
applications that provide the
enterprise with information
technology processing and services.
People, skills, and competencies are
linked to people and are required
for successful completion of all
activities and for making correct
decisions and taking corrective
actions. Note that portions of this
text are presented both in this
course and in Cybersecurity
Management II - Tactical.
ISO 31000:2009 Risk management—Principles and
(CH1) guidelines
, Concept relating to the current or
future state, fact, or period of
Maturity (CH1) evolving development, quality,
sophistication, and effectiveness
(not necessarily age dependent).
Typically synonymous with risk
management for all sectors; also
used to emphasize an integrated
Enterprise-wide
and holistic "umbrella" approach
risk management
delivering objectives by managing
(ERM) (CH1)
risk across an organization, its silos,
its risk specialist, and other
subfunctions and processes.
A simplified system that "road-maps"
improving, desired, anticipated,
typical, or logical evolutionary paths
Maturity model of organization actions. The
(CH1 ascending direction implies
progression increases organization
effectiveness over time (albeit
subject to stasis and regression).
Management I – Strategic EXAM
ELABORATIONS QUESTIONS AND
VERIFIED ANSWERS 2025 UPDATE
| 100% SOLVED
Save
Terms in this set (123)
, COBIT 5 is an information security
management system (ISMS) backed
by ISACA, an international
professional association serving a
broad range of IT governance
professionals and a framework
accepted by many assurance and
governance professionals.
---
begins with principles, policies, and
frameworks as mechanisms acting as
hand-rails guiding desired behavior
for day-to-day management.
Processes describe an organized set
of practices and activities to achieve
certain objectives and produce a set
of outputs in support of achieving
cybersecurity objectives aligned to
enterprise objectives.
Organizational structures are the
key decision-making entities in an
enterprise. Culture, ethics, and
behavior of individuals and of the
COBIT 5
enterprise are a key success factor
enablers (CH1)
in governance and management
, activities. Information is organization
pervasive and includes all
information produced and used by
the enterprise. Information is not
only required to keep the
organization running and well
governed, but is often the key
product of the operational
enterprise. Services, infrastructure,
and applications include the
infrastructure, technology, and
applications that provide the
enterprise with information
technology processing and services.
People, skills, and competencies are
linked to people and are required
for successful completion of all
activities and for making correct
decisions and taking corrective
actions. Note that portions of this
text are presented both in this
course and in Cybersecurity
Management II - Tactical.
ISO 31000:2009 Risk management—Principles and
(CH1) guidelines
, Concept relating to the current or
future state, fact, or period of
Maturity (CH1) evolving development, quality,
sophistication, and effectiveness
(not necessarily age dependent).
Typically synonymous with risk
management for all sectors; also
used to emphasize an integrated
Enterprise-wide
and holistic "umbrella" approach
risk management
delivering objectives by managing
(ERM) (CH1)
risk across an organization, its silos,
its risk specialist, and other
subfunctions and processes.
A simplified system that "road-maps"
improving, desired, anticipated,
typical, or logical evolutionary paths
Maturity model of organization actions. The
(CH1 ascending direction implies
progression increases organization
effectiveness over time (albeit
subject to stasis and regression).