CISM Sample Examination Questions 2023.
CISM Sample Examination Questions 2023.1. Senior management commitment and support for information security can BEST be obtained through presentations that A. Use illustrative examples of successful attacks B. Explain the technical risks to the organization C. Evaluate the organization against best security practices D. Tie security risks to key business objectives 2. An internal review of a web-based application system finds the ability to gain access to all employees' accounts by changing the employee's ID on the URL used for accessing the account. The vulnerability identified is: A. Broken authentication B. Un-validated input C. Cross-site scripting D. Structured query language (SOL) injection 3. Which of the following will BEST protect an organization from internal security attacks? A. Static IP addressing B. Internal address translation C. Prospective employee background checks D. Employee awareness certification program 4. When contracting with an outsourcer to provide security administration, the MOST important contractual element is the: A. Right-to-terminate clause B. Limitations of liability C. Service level agreement (SLA) D. Financial penalties clause
Written for
- Institution
- CISM Sample
- Course
- CISM Sample
Document information
- Uploaded on
- February 20, 2024
- Number of pages
- 9
- Written in
- 2023/2024
- Type
- Exam (elaborations)
- Contains
- Questions & answers
Subjects
-
cism sample examination questions 2023