Which of the following should be the MOST important consideration of business continuity management?
Which of the following is the MOST useful input for an information security manager when updating the organization’s security policy?
Which of the following should be given the HIGHEST priority during an information security post-incident review?
Which of the following incident response phases involves actions to help safeguard critical systems while maintaining business operations?
An organization has acquired a company in a foreign country to gain an advantage in a new market. Which of the following is the FIRST step the information security manager should take?
Security administration efforts will be greatly reduced following the deployment of which of the following techniques?
Which of the following BEST indicates senior management support for an information security program?
Which of the following metrics would provide an accurate measure of an information security program ' s performance?
Which of the following would BEST guide the development and maintenance of an information security program?
When performing a business impact analysis (BIA), who should be responsible for determining the initial recovery time objective (RTO)?
Which of the following is the BEST way to ensure the organization ' s security objectives are embedded in business operations?
An incident response team has established that an application has been breached. Which of the following should be done NEXT?
Which of the following is MOST important for an information security manager to consider when determining whether data should be stored?
Which of the following is the MOST important consideration when briefing executives about the current state of the information security program?
When management changes the enterprise business strategy which of the following processes should be used to evaluate the existing information security controls as well as to select new information security controls?
Which of the following BEST facilitates effective incident response testing?
Which of the following is the PRIMARY purpose of a business impact analysis (BIA)?
An incident response team has been assembled from a group of experienced individuals, Which type of exercise would be MOST beneficial for the team at the first drill?
An organization requires that business-critical applications be recovered within 30 minutes in the event of a disaster. Which of the following metrics should be in the business continuity plan (BCP) to manage this requirement?
Which of the following is the MOST important issue in a penetration test?