Certified Information Security Manager Test Questions with Answers
Certified Information Security Manager Test Questions with Answers Risk analysis is where the level of risk and its nature are assessed and understood, and it should: A. Be based on the profiles of similar companies B. Provide an equal degree of protection for all assets C. Equally consider the potential size and likelihood of loss D. Provide more weight to the likelihood vs. the size of loss - Answer-C. Equally consider the potential size and likelihood of loss Risk management is different in each organization based on an organization's appetite for risk. Understanding organizational risks and an organization's business objectives assists in this process. It is not practical to eliminate all risk and therefore a risk manager should strive for: A. Achieving a risk and organizational goals equilibrium B. Reducing risk to an acceptable level C. Ensuring that policy development considers organizational structure D. Addressing external regulation as threats - Answer-B. Reducing risk to an acceptable level When contracting with an outsourced party to provide security administrators, which is the most important contractual element? A. Right-to-terminate clause B. Limitations of liability C. Service Level Agreement, SLA D. Financial penalties clause - Answer-C. Service Level Agreement, SLA
Written for
- Institution
- Certified Information Security Manager
- Course
- Certified Information Security Manager
Document information
- Uploaded on
- July 25, 2024
- Number of pages
- 12
- Written in
- 2023/2024
- Type
- Exam (elaborations)
- Contains
- Questions & answers
Subjects
-
certified information security manager
-
certified information security manager test