100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

BCS CISMP Questions and Correct Answers

Rating
-
Sold
-
Pages
33
Grade
A+
Uploaded on
04-11-2025
Written in
2025/2026

BCS CISMP Questions and Correct Answers

Institution
BCS CISMP
Course
BCS CISMP











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
BCS CISMP
Course
BCS CISMP

Document information

Uploaded on
November 4, 2025
Number of pages
33
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

1 | Page



BCS CISMP Questions and Correct Answers
Which of the following doesn't apply to risk?




a) Risk is the effect of uncertainty on objectives

b) When assessing risk you should take into account the
consequence and likelihood of security incidents

c) Risk is the possibility that a threat actor will exploit a
vulnerability to create a security incident

d) In order to assess risk you will need an understanding of your
organisation's assets and its vulnerabilities, as well as the threats,
both internal and external, that it faces Ans: C

Which of the following is true?




a) An unpatched web server is a threat

b) An unencrypted corporate wireless LAN is a threat

c) Both of the above

d) None of the above Ans: D

© 2025 All rights reserved

, 2 | Page


Which of the following is not a vulnerability?




a) A misconfigured firewall

b) A script kiddie

c) Both of the above

d) None of the above Ans: B

ISMS stands for...




a) Integrated Security Management System

b) Information System Managed Security

c) Information Security Management System

d) Integrated System for Managed Security Ans: C

When accessing an IT system, the order of events is...




a) Authentication, Identification, Authorisation




© 2025 All rights reserved

, 3 | Page


b) Identification, Authorisation, Authentication

c) Authorisation, Identification, Authentication

d) None of the above Ans: D

According to NIST definitions, which of the following is not an
essential characteristic of cloud computing?




a) Access through value-added networks using proprietary
protocols

b) Rapid elasticity

c) Location-independent resource pooling

d) On-demand self-service Ans: A

A web service available to the public has been compromised. The
hackers were able to copy passwords and modify them. Which
information security principles will have been violated by the
breach?




a) Confidentiality and integrity only



© 2025 All rights reserved

, 4 | Page


b) Integrity and availability only

c) Availability and confidentiality only

d) Confidentiality, integrity and availability Ans: D

When considering the deployment of a new information system,
which of the following is correct?




a) The system should be accredited before being certified

b) Certification is a formal assessment of the information system
against information assurance requirements, resulting in the
acceptance of residual risk in the context of business requirements
and formal approval by management

c) Accreditation is a comprehensive assessment of the system's
security controls to determine whether they meet the security
requirements of the system

d) The system should be certified before being accredited Ans: D

When valuing an asset, what should you take into consideration?
Select the best answer.




© 2025 All rights reserved

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Graders Chamberlian School of Nursing
View profile
Follow You need to be logged in order to follow users or courses
Sold
506
Member since
2 year
Number of followers
167
Documents
27090
Last sold
1 day ago
Study Smart

Your one-stop resource for high-quality, exam-focused study materials. Here, you'll find expertly crafted summaries, past exam papers, notes, and assignments tailored to help you succeed in your courses. Every document is written with clarity, accuracy, and exam performance in mind—saving you hours of studying and helping you boost your grades. ✅ Clear and well-structured content ✅ Covers key exam topics and common questions ✅ Trusted by students for academic success ✅ Instant downloads and affordable prices Whether you're cramming for finals or just staying ahead in class, my materials are designed to make your studying smarter, not harder. Take a look around and get the edge you need!

Read more Read less
3.8

121 reviews

5
54
4
26
3
21
2
4
1
16

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions