ISACA Exam Questions

What is the MOST important element to include when developing user security awareness material?

What is the MOST important element to include when developing user security awareness

Information regarding social engineering

Detailed security policies

Senior management endorsement

Easy-to-read and compelling information


Making security awareness material easy and compelling to read is the most important success
factor. Users must be able to understand, in easy terms, complex security concepts in a way that
makes compliance more accessible. Choice A would also be important but it needs to be

presented in an adequate format. Detailed security policies might not necessarily be included in
the training materials. Senior management endorsement is important for the security program as a
whole and not necessarily for the awareness training material.