Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

CISM Leak Questions

Page: 22 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 85

An organization has an ongoing security awareness training program. Employee participation has been decreasing over the year, while the number of malware and phishing incidents from email has been increasing. What is the information security manager ' s BEST course of action?

Options:

A.

Report the findings to senior management with recommendations.

B.

Implement a phishing reporting tool in the email system.

C.

Include regular phishing campaigns after each training session.

D.

Make the training program mandatory for all employees.

Question 86

Which of the following BEST enables an organization to maintain legally admissible evidence7

Options:

A.

Documented processes around forensic records retention

B.

Robust legal framework with notes of legal actions

C.

Chain of custody forms with points of contact

D.

Forensic personnel training that includes technical actions

Question 87

An organization that has recently suffered a cyberattack is considering engaging law enforcement. Which of the following is the MOST important course of action for the incident response team?

Options:

A.

Encrypt digital evidence

B.

Solicit input from senior management

C.

Engage legal counsel

D.

Hire a digital forensic expert for evidence analysis

Question 88

Which of the following is a PRIMARY reason for senior management to review reports on information security?

Options:

A.

To assess the effectiveness of the security program

B.

To ensure adequate security resources are available

C.

To confirm security audits are regularly performed

D.

To ensure security risk is managed cost-effectively

Page: 22 / 86
Total 1191 questions