Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Isaca Certification CISM Isaca Study Notes

Page: 48 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 189

Which of the following should be the MOST important consideration when establishing information security policies for an organization?

Options:

A.

Job descriptions include requirements to read security policies.

B.

The policies are updated annually.

C.

Senior management supports the policies.

D.

The policies are aligned to industry best practices.

Question 190

Which of the following security initiatives should be the FIRST step in helping an organization maintain compliance with privacy regulations?

Options:

A.

Developing security awareness training

B.

Implementing security information and event management (SIEM)

C.

Implementing a data classification framework

D.

Installing a data loss prevention (DLP) solution

Question 191

Which of the following would BEST justify spending for a compensating control?

Options:

A.

Root cause analysis

B.

Vulnerability assessment

C.

Emerging risk trends

D.

Risk analysis

Question 192

A finance department director has decided to outsource the organization ' s budget application and has identified potential providers. Which of the following actions should be initiated FIRST by IN information security manager?

Options:

A.

Determine the required security controls for the new solution

B.

Review the disaster recovery plans (DRPs) of the providers

C.

Obtain audit reports on the service providers ' hosting environment

D.

Align the roles of the organization ' s and the service providers ' stats.

Page: 48 / 86
Total 1191 questions