Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Isaca Isaca Certification CISM Questions and answers with CertsForce

Viewing page 6 out of 18 pages
Viewing questions 101-120 out of questions
Questions # 101:

When establishing metrics for an information security program, the BEST approach is to identify indicators that:

Options:

A.

reduce information security program spending.


B.

support major information security initiatives.


C.

reflect the corporate risk culture.


D.

demonstrate the effectiveness of the security program.


Expert Solution
Questions # 102:

Which of the following is MOST helpful in determining an organization ' s current capacity to mitigate risks?

Options:

A.

Capability maturity model


B.

Vulnerability assessment


C.

IT security risk and exposure


D.

Business impact analysis (BIA)


Expert Solution
Questions # 103:

Which of the following BEST enables an organization to enhance its incident response plan processes and procedures?

Options:

A.

Security risk assessments


B.

Lessons learned analysis


C.

Information security audits


D.

Key performance indicators (KPIs)


Expert Solution
Questions # 104:

Which of the following is a PRIMARY function of an incident response team?

Options:

A.

To provide effective incident mitigation


B.

To provide a risk assessment for zero-day vulnerabilities


C.

To provide a single point of contact for critical incidents


D.

To provide a business impact analysis (BIA)


Expert Solution
Questions # 105:

Which of the following is the MOST effective way to detect security incidents?

Options:

A.

Analyze recent security risk assessments.


B.

Analyze security anomalies.


C.

Analyze penetration test results.


D.

Analyze vulnerability assessments.


Expert Solution
Questions # 106:

An organization is performing due diligence when selecting a third party. Which of the following is MOST helpful to reduce the risk of unauthorized sharing of information during this process?

Options:

A.

Using secure communication channels


B.

Establishing mutual non-disclosure agreements (NDAs)


C.

Requiring third-party privacy policies


D.

Obtaining industry references


Expert Solution
Questions # 107:

Which of the following presents the GREATEST challenge to the recovery of critical systems and data following a ransomware incident?

Options:

A.

Lack of encryption for backup data in transit


B.

Undefined or undocumented backup retention policies


C.

Ineffective alert configurations for backup operations


D.

Unavailable or corrupt data backups


Expert Solution
Questions # 108:

Which of the following is MOST important to complete during the recovery phase of an incident response process before bringing affected systems back online?

Options:

A.

Record and close security incident tickets.


B.

Test and verify that compromisedsystems are clean.


C.

Document recovery steps for senior management reporting.


D.

Capture and preserve forensic images of affected systems.


Expert Solution
Questions # 109:

Which of the following is the MOST important reason to document information security incidents that are reported across the organization?

Options:

A.

Evaluate the security posture of the organization.


B.

Identify unmitigated risk.


C.

Prevent incident recurrence.


D.

Support business investments in security.


Expert Solution
Questions # 110:

Several critical systems have been compromised with malware. Which of the following is the BEST strategy to eradicate this incident?

Options:

A.

Perform malware scanning


B.

Reimage the systems


C.

Block access to the impacted systems


D.

Perform a vulnerability assessment


Expert Solution
Questions # 111:

An external security audit has reported multiple instances of control noncompliance. Which of the following is MOST important for the information security manager to communicate to senior management?

Options:

A.

Control owner responses based on a root cause analysis


B.

The impact of noncompliance on the organization ' s risk profile


C.

A noncompliance report to initiate remediation activities


D.

A business case for transferring the risk


Expert Solution
Questions # 112:

Which of the following should be an information security manager s MOST important consideration when determining the priority for implementing security controls?

Options:

A.

Alignment with industry benchmarks


B.

Results of business impact analyses (BIAs)


C.

Possibility of reputational loss due to incidents


D.

Availability of security budget


Expert Solution
Questions # 113:

Which of the following is the PRIMARY responsibility of an information security manager in an organization that is implementing the use of company-owned mobile devices in its operations?

Options:

A.

Require remote wipe capabilities for devices.


B.

Conduct security awareness training.


C.

Review and update existing security policies.


D.

Enforce passwords and data encryption on the devices.


Expert Solution
Questions # 114:

An information security manager has been made aware of a new data protection regulation that will soon go into effect. Which of the following is the BEST way to manage the risk of noncompliance?

Options:

A.

Perform a gap analysis.


B.

Consult with senior management on the best course of action.


C.

Implement a program of work to comply with the new legislation.


D.

Understand the cost of noncompliance.


Expert Solution
Questions # 115:

What is the PRIMARY role of the information security program?

Options:

A.

To perform periodic risk assessments and business impact analyses (BIAs)


B.

To provide guidance in managing organizational security risk


C.

To approve information security requirements related to the business


D.

To educate stakeholders regarding information security requirements


Expert Solution
Questions # 116:

Which of the following is MOST important to include in a report to key stakeholders regarding the effectiveness of an information security program?

Options:

A.

Security metrics


B.

Security baselines


C.

Security incident details


D.

Security risk exposure


Expert Solution
Questions # 117:

A data loss prevention (DLP) tool has flagged personally identifiable information (Pll) during transmission. Which of the following should the information security manager do FIRST?

Options:

A.

Validate the scope and impact with the business process owner.


B.

Initiate the incident response plan.


C.

Review and validate the rules within the DLP system.


D.

Escalate the issue to senior management.


Expert Solution
Questions # 118:

Which of the following BEST minimizes information security risk in deploying applications to the production environment?

Options:

A.

Integrating security controls in each phase of the life cycle


B.

Conducting penetration testing post implementation


C.

Having a well-defined change process


D.

Verifying security during the testing process


Expert Solution
Questions # 119:

Which of the following has the GREATEST influence on the successful integration of information security within the business?

Options:

A.

Organizational structure and culture


B.

Risk tolerance and organizational objectives


C.

The desired state of the organization


D.

Information security personnel


Expert Solution
Questions # 120:

During an information security audit, it was determined that IT staff did not follow the established standard when configuring and managing IT systems. Which of the following is the BEST way to prevent future occurrences?

Options:

A.

Providing annual information security awareness training


B.

Conducting periodic vulnerability scanning


C.

Implementing a strict change control process


D.

Updating configuration baselines


Expert Solution
Viewing page 6 out of 18 pages
Viewing questions 101-120 out of questions