100% de satisfacción garantizada Inmediatamente disponible después del pago Tanto en línea como en PDF No estas atado a nada 4,6 TrustPilot
logo-home
Examen

CISM 2023 EXAM QUESTIONS WITH ALL COMPLETE SOLUTIONS

Puntuación
-
Vendido
-
Páginas
25
Grado
A+
Subido en
11-10-2023
Escrito en
2023/2024

CISM 2023 EXAM QUESTIONS WITH ALL COMPLETE SOLUTIONS 1. Which of the following would BEST ensure the success of information security governance within an organization? A. The steering committee approves all security projects. B. The security policy manual is distributed to all managers. C. Security procedures are accessible on the company intranet. D. The corporate network utilizes multiple screened subnets. - ANSWER- The steering committee approves all security projects. 2. Which of the following should be developed FIRST? A. Standards B. Procedures C. Policies D. Guidelines - ANSWER- Policies 3. Which of the following individuals would be in the BEST position to sponsor the creation of an information security steering group? A. Chief security officer B. Chief operating officer C. Chief internal auditor D. Chief legal counsel - ANSWER- Chief operating officer 4. Which of the following would normally be covered in an insurance policy for computer equipment coverage? Equipment: A. leased to the insured by another company. B. leased to another company by the insured. C. under the direct control of another company. D. located at and belonging to a service provider. - ANSWER- leased to the insured by another company. 5. The MOST appropriate reporting base for the information security management function would be to report to the: A. head of IT. B. infrastructure director. C. network manager. D. chief information officer. - ANSWER- chief information officer 6. Which of the following is MOST indicative of the failure of information security governance within an organization? A. The information security department has had difficulty filling vacancies. B. The chief information officer (CIO) approves changes to the security policy. C. The information security oversight committee only meets quarterly. D. The data center manager has final sign-off on all security projects. - ANSWER- The data center manager has final sign-off on all security projects 7. When an organization hires a new information security manager, which of the following goals should this individual pursue FIRST? A. Develop a security architecture B. Build senior management support C. Assemble an experienced staff D. Interview peer organizations - ANSWER- Build senior management support 8. Which of the following are seldom changed in response to technological changes? A. Standards B. Procedures C. Policies D. Guidelines - ANSWER- Policies 9. Which of the following is characteristic of decentralized information security management across a geographically dispersed organization? A. More uniformity in quality of service B. Better adherence to policies C. More aligned to business unit needs D. Less total cost of ownership - ANSWER- More aligned to business unit needs 10. A business unit intends to deploy a new technology in a manner that places it in violation of existing information security standards. What immediate action should the information security manager take? A. Enforce the existing security standard B. Change the standard to permit the deployment. C. Perform a risk analysis to quantify the risk. D. Permit a 90-day window to see if a problem occurs. - ANSWER- Perform a risk analysis to quantify the risk 11. Which of the following would be the MOST appropriate task for a chief information security officer to perform? A. Update platform-level security settings. B. Conduct disaster recovery test exercises. C. Approve access to critical financial systems. D. Develop an information security strategy paper. - ANSWER- Develop an information security strategy paper 12. The MOST important reason for conducting the same risk assessment more than once is because: A. mistakes are often made in the initial reviews. B. security risks are subject to frequent change. C. different reviewers analyze risk factors differently. D. it shows management that the security staff is adding value. - ANSWER- security risks are subject to frequent change. 13. Which of the following should management use to determine the amount of resources to devote to mitigating exposures? A. Risk analysis results B. Audit report findings C. Penetration test results D. Fixed percentage of IT budget - ANSWER- Risk analysis results 14. Acceptable risk is achieved when: A. residual risk is minimized. B. transferred risk is minimized. C. control risk equals acceptable risk. D. residual risk equals transferred risk. - ANSWER- residual risk is minimized. 15. The BEST way to integrate risk management into life cycle processes is through: A. policy development. B. change management. C. awareness training. D. regular monitoring. - ANSWER- change management 16. The decision on whether new risks should fall under periodic or event-driven reporting should be based on: A. severity and duration. B. visibility and duration. C. likelihood and duration. D. absolute monetary value. - ANSWER- absolute monetary value

Mostrar más Leer menos
Institución
CISM
Grado
CISM










Ups! No podemos cargar tu documento ahora. Inténtalo de nuevo o contacta con soporte.

Escuela, estudio y materia

Institución
CISM
Grado
CISM

Información del documento

Subido en
11 de octubre de 2023
Número de páginas
25
Escrito en
2023/2024
Tipo
Examen
Contiene
Preguntas y respuestas

Temas

$15.49
Accede al documento completo:

100% de satisfacción garantizada
Inmediatamente disponible después del pago
Tanto en línea como en PDF
No estas atado a nada


Documento también disponible en un lote

Conoce al vendedor

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
Stuviaascorers University of Washington
Seguir Necesitas iniciar sesión para seguir a otros usuarios o asignaturas
Vendido
348
Miembro desde
2 año
Número de seguidores
185
Documentos
10257
Última venta
1 día hace
StuviaAscorers | Top Study Notes & Exam Solutions

Stuviaascorers – Your #1 Source for Top-Quality Study Materials! Struggling with exams? Stuviaascorers has got you covered! I provide expertly crafted study notes, summaries, past papers, and exam-ready answers to help you pass with flying colors. My materials are designed for clarity, accuracy, and success—so you can study smarter, not harder! Why Choose My Study Materials? Well-structured & easy to understand – No fluff, just what you need! Exam-focused & high-scoring content – Get straight to the point! Accurate answers & clear explanations – Learn with confidence! Save time & boost your grades – Study efficiently! Don’t leave your success to chance! Browse my documents and start acing your exams today!

Lee mas Leer menos
3.8

64 reseñas

5
30
4
11
3
11
2
2
1
10

Recientemente visto por ti

Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes