Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

CISM Questions Bank

Page: 35 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 137

Which of the following should be triggered FIRST when unknown malware has infected an organization ' s critical system?

Options:

A.

Incident response plan

B.

Disaster recovery plan (DRP)

C.

Business continuity plan (BCP)

D.

Vulnerability management plan

Question 138

Which of the following is the MOST effective way to increase security awareness in an organization?

Options:

A.

Implement regularly scheduled information security audits.

B.

Require signed acknowledgment of information security policies.

C.

Conduct periodic simulated phishing exercises.

D.

Include information security requirements in job descriptions.

Question 139

Which of the following is MOST effective for communicating forward-looking trends within security reporting?

Options:

A.

Key control indicator (KCIs)

B.

Key risk indicators (KRIs)

C.

Key performance indicators (KPIs)

D.

Key goal indicators (KGIs)

Question 140

Which of the following analyses will BEST identify the external influences to an organization ' s information security?

Options:

A.

Business impact analysis (BIA)

B.

Gap analysis

C.

Threat analysis

D.

Vulnerability analysis

Page: 35 / 86
Total 1191 questions