The CA Hub

CAF-3 · Chapter 17 · Question 11 of 15

To ensure employees truly understand the theoretical risk management policies, the IT department periodically sends out fake, deceptive emails to see if staff will click on malicious links. This highly effective best practice is known as:

Test yourself: pick an answer

Reveal answer & explanation

Correct answer: C) Conducting simulations or mock phishing campaigns

Explanation

Using simulations or drills, such as mock phishing campaigns, is a best practice to practically assess employees' understanding of risk management and security policies in real-world scenarios

All 15 questions in Chapter 17Best Practices & Implementation Strategies MCQs with answers

More Best Practices & Implementation Strategies MCQs

Sponsored slot availableRun a CA academy or hiring firm? Put your name in front of students preparing for this exam.Advertise →