Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Ace Your CISM Isaca Certification Exam

Page: 5 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 17

Which of the following is the MOST important reason for an information security manager to archive and retain the organization ' s electronic communication and email data?

Options:

A.

To track personal use of electronic communication by users

B.

To provide as evidence in legal proceedings when required

C.

To meet the requirements of global security standards

D.

To identify and scan attachments for malware

Question 18

Of the following, who is in the BEST position to evaluate business impacts?

Options:

A.

Senior management

B.

Information security manager

C.

IT manager

D.

Process manager

Question 19

Which of the following is MOST important for the effective implementation of an information security governance program?

Options:

A.

Employees receive customized information security training

B.

The program budget is approved and monitored by senior management

C.

The program goals are communicated and understood by the organization.

D.

Information security roles and responsibilities are documented.

Question 20

Which of the following is the MOST effective way to align an organization’s information security risk management process with business objectives?

Options:

A.

Mandate that enterprise risk management policies be enforced across organizational departments

B.

Implement multiple layers of technical security controls to manage risk effectively

C.

Establish an information security governance framework that integrates with enterprise risk management

D.

Conduct annual information security awareness and risk management training

Page: 5 / 86
Total 1191 questions