Alignment to an industry security framework ensures that the organization adopts best practices and standards for security control implementation and maintenance. Reference = CISM Review Manual, 16th Edition, Domain 1: Information Security Governance, Chapter 1: Establish and Maintain an Information Security Strategy, Section: Information Security Frameworks