CISM Sample Examination Questions 2023
CISM Sample Examination Questions 2023.1. Senior management commitment and support for information security can BEST be obtained through presentations that A. Use illustrative examples of successful attacks B. Explain the technical risks to the organization C. Evaluate the organization against best security practices D. Tie security risks to key business objectives 2. An internal review of a web-based application system finds the ability to gain access to all employees' accounts by changing the employee's ID on the URL used for accessing the account. The vulnerability identified is: A. Broken authentication B. Un-validated input C. Cross-site scripting D. Structured query language (SOL) injection 3. Which of the following will BEST protect an organization from internal security attacks? A. Static IP addressing B. Internal address translation C. Prospective employee background checks D. Employee awareness certification program 4. When contracting with an outsourcer to provide security administration, the MOST important contractual element is the: A. Right-to-terminate clause B. Limitations of liability C. Service level agreement (SLA) D. Financial penalties clause
Geschreven voor
- Instelling
- CISM Sample
- Vak
- CISM Sample
Documentinformatie
- Geüpload op
- 20 februari 2024
- Aantal pagina's
- 9
- Geschreven in
- 2023/2024
- Type
- Tentamen (uitwerkingen)
- Bevat
- Vragen en antwoorden
Onderwerpen
-
cism sample examination questions 2023