Question and answers verified to pass
2025/2026
According to the C.I.A. triangle, which of the following is a desirable characteristic for computer
security? - correct answer ✔Availability
Which of the following is the process that develops, creates, and implements strategies for the
accomplishment of objectives? - correct answer ✔Planning
Which of the following is the principle of management dedicated to the structuring of resources to
support the accomplishment of objectives? - correct answer ✔Organization
Which of the following is the first step in the problem-solving process? - correct answer ✔Recognize
and define the problem
Which of the following is NOT a unique function of Information Security Management? - correct answer
✔Principles
Which function of InfoSec Management encompasses security personnel as well as aspects of the SETA
program? - correct answer ✔People
Information security project managers often follow methodologies based on what methodology
promoted by the Project Management Institute? - correct answer ✔Project Management Body of
Knowledge (PMBoK)
Which of the following is NOT a knowledge area in the Project Management knowledge body? - correct
answer ✔Technology
, What is one of the most frequently cited failures in project management? - correct answer ✔Failure to
meet project deadlines
The management of human resources must address many complicating factors; which of the following is
NOT among them? - correct answer ✔All workers operate at approximately the same level of efficiency
Which of the following explicitly declares the business of the organization and its intended areas of
operations? - correct answer ✔Mission Statement
Which type of planning is the primary tool in determining the long-term direction taken by an
organization? - correct answer ✔Strategic
In which level of planning are budgeting, resource allocation, and manpower critical components? -
correct answer ✔Tactical
Which type of planning is used to organize the ongoing, day-to-day performance of tasks? - correct
answer ✔Operational
The National Association of Corporate Directors (NACD) recommends four essential practices for boards
of directors. Which of the following is NOT one of these recommended practices? - correct answer
✔Hold regular meetings with the CIO to discuss tactical InfoSect planning
Which of the following is an information security governance responsibility of the Chief Security Officer?
- correct answer ✔Implement policy, report security vulnerabilities and breaches
Which of the following is a key advantage of the bottom-up approach to security implementation? -
correct answer ✔Utilizes the technical expertise of the individual administrators