100% de satisfacción garantizada Inmediatamente disponible después del pago Tanto en línea como en PDF No estas atado a nada 4.2 TrustPilot
logo-home
Examen

CISM practice test questions and answers (100% pass)

Puntuación
-
Vendido
-
Páginas
59
Grado
A+
Subido en
16-08-2024
Escrito en
2024/2025

CISM practice test questions and answers (100% pass) An information security manager wants to improve the ability to identify changes in risk levels affecting the organization's systems. Which of the following is the BEST method to achieve this objective? A. Performing business impact analysis (BIA) B. Monitoring key goal indicators (KGIs) C. Monitoring key risk indicators (KRIs) D. Updating the risk register - Answer️️ -C When developing an escalation process for an incident response plan, the information security manager should PRIMARILY consider the: A. Affected stakeholders B. Incident response team C. Availability of technical resources D. Media coverage - Answer️️ -A ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM 2 Which of the following should be an information security managers MOST important consideration when determining if an information asset has been classified appropriately? A. Value to the business B. Security policy requirements C. Ownership of information D. Level of protection - Answer️️ -A The effectiveness of an incident response team will be GREATEST when: A. The incident response process is updated based on lessons learned B. The incident response team members are trained security personnel C. The incident response team meets on a regular basis to review log files D. Incidents are identified using a security information and event monitoring (SIEM) system - Answer️️ -A An information security manager MUST have an understanding of the organizational business goals to: A. Relate information security to change management B. Develop an information security strategy ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM 3 C. Develop operational procedures D. Define key performance indicators (KPIs) - Answer️️ -D An information security manager MUST have an understanding of an information security program? A. Understanding current and emerging technologies B. Establishing key performance indicators (KPIs) C. Conducting periodic risk assessments D. Obtaining stakeholder input - Answer️️ -D An attacker was able to gain access to an organizational perimeter firewall and made changes to allow wider external access and to steal data. Which of the following would have BEST provided timely identification of this incident? A. Implementing a data loss prevention (DLP) suite B. Deploying an intrusion prevention system (IPS) C. Deploying a security information and event managing system (SIEM) D. Conducting regular system administrator awareness training - Answer️️ -C When establishing metrics for an information security program, the BEST approach is to identify indicators that: ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM 4 A. Support major information security initiatives B. Reflect the corporate risk culture C. Reduce information security spending D. Demonstrate the effectiveness of the security program - Answer️️ -D For an organization that provides web-based services, which of the following security events would MOST likely initiate an incident response plan and be escalated to management? A. Anti-malware alerts on several employees workstations B. Several port scans of web server C. Multiple failed login attempts on an employee's workstation D. Suspicious network traffic originating from the demilitarized zone (DMZ) - Answer️️ -A An information security manager is implementing a bring your own device (BYOD) program. Which of the following would BEST ensure that u

Mostrar más Leer menos
Institución
CISM
Grado
CISM











Ups! No podemos cargar tu documento ahora. Inténtalo de nuevo o contacta con soporte.

Escuela, estudio y materia

Institución
CISM
Grado
CISM

Información del documento

Subido en
16 de agosto de 2024
Número de páginas
59
Escrito en
2024/2025
Tipo
Examen
Contiene
Preguntas y respuestas

Temas

Vista previa del contenido

©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM



CISM practice test questions and answers (100% pass)



An information security manager wants to improve the ability to identify changes

in risk levels affecting the organization's systems. Which of the following is the

BEST method to achieve this objective?

A. Performing business impact analysis (BIA)

B. Monitoring key goal indicators (KGIs)

C. Monitoring key risk indicators (KRIs)


D. Updating the risk register - Answer✔️✔️-C


When developing an escalation process for an incident response plan, the

information security manager should PRIMARILY consider the:

A. Affected stakeholders

B. Incident response team

C. Availability of technical resources


D. Media coverage - Answer✔️✔️-A




1

,©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM


Which of the following should be an information security managers MOST

important consideration when determining if an information asset has been

classified appropriately?

A. Value to the business

B. Security policy requirements

C. Ownership of information


D. Level of protection - Answer✔️✔️-A


The effectiveness of an incident response team will be GREATEST when:

A. The incident response process is updated based on lessons learned

B. The incident response team members are trained security personnel

C. The incident response team meets on a regular basis to review log files

D. Incidents are identified using a security information and event monitoring

(SIEM) system - Answer✔️✔️-A


An information security manager MUST have an understanding of the

organizational business goals to:

A. Relate information security to change management

B. Develop an information security strategy



2

,©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM


C. Develop operational procedures


D. Define key performance indicators (KPIs) - Answer✔️✔️-D


An information security manager MUST have an understanding of an information

security program?

A. Understanding current and emerging technologies

B. Establishing key performance indicators (KPIs)

C. Conducting periodic risk assessments


D. Obtaining stakeholder input - Answer✔️✔️-D


An attacker was able to gain access to an organizational perimeter firewall and

made changes to allow wider external access and to steal data. Which of the

following would have BEST provided timely identification of this incident?

A. Implementing a data loss prevention (DLP) suite

B. Deploying an intrusion prevention system (IPS)

C. Deploying a security information and event managing system (SIEM)


D. Conducting regular system administrator awareness training - Answer✔️✔️-C


When establishing metrics for an information security program, the BEST

approach is to identify indicators that:


3

, ©PREP4EXAMS 2024/2025 REAL EXAM DUMPS Tuesday, August 6, 2024 10,57 AM


A. Support major information security initiatives

B. Reflect the corporate risk culture

C. Reduce information security spending


D. Demonstrate the effectiveness of the security program - Answer✔️✔️-D


For an organization that provides web-based services, which of the following

security events would MOST likely initiate an incident response plan and be

escalated to management?

A. Anti-malware alerts on several employees workstations

B. Several port scans of web server

C. Multiple failed login attempts on an employee's workstation

D. Suspicious network traffic originating from the demilitarized zone (DMZ) -

Answer✔️✔️-A


An information security manager is implementing a bring your own device

(BYOD) program. Which of the following would BEST ensure that users adhere to

the security standards?

A. Publish the standards on the internet page

B. Deploy a device management solution



4
$13.49
Accede al documento completo:

100% de satisfacción garantizada
Inmediatamente disponible después del pago
Tanto en línea como en PDF
No estas atado a nada


Documento también disponible en un lote

Conoce al vendedor

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
OliviaWest Teachme2-tutor
Seguir Necesitas iniciar sesión para seguir a otros usuarios o asignaturas
Vendido
105
Miembro desde
1 año
Número de seguidores
17
Documentos
8528
Última venta
6 días hace
Pure Orchid Haven.

All Documents,and package deals offered by seller Olivia West.

2.8

22 reseñas

5
6
4
2
3
4
2
1
1
9

Recientemente visto por ti

Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes