Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Isaca Certification CISM Syllabus Exam Questions Answers

Page: 40 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 157

When developing security processes for handling credit card data on the business unit ' s information system, the information security manager should FIRST:

Options:

A.

ensure alignment with industry encryption standards.

B.

ensure that systems that handle credit card data are segmented.

C.

review industry best practices for handling secure payments.

D.

review corporate policies regarding credit card information.

Question 158

An information security manager has recently been notified of potential security risks associated with a third-party service provider. What should be done NEXT to address this concern?

Options:

A.

Escalate to the chief risk officer (CRO).

B.

Conduct a vulnerability analysis.

C.

Conduct a risk analysis.

D.

Determine compensating controls.

Question 159

Which of the following is the MOST important consideration for an incident response team seeking to limit the impact of incidents?

Options:

A.

Senior management’s understanding of the risk appetite

B.

Year-to-year analysis of incident response training completion

C.

Understanding of the organization’s operational requirements

D.

Allocation of funding assigned to incident management functions

Question 160

An organization ' s information security manager reads on social media that a recently purchased vendor product has been compromised and customer data has been posted online. What should the information security manager do FIRST?

Options:

A.

Perform a business impact analysis (BIA).

B.

Notify local law enforcement agencies of a breach.

C.

Activate the incident response program.

D.

Validate the risk to the organization.

Page: 40 / 86
Total 1191 questions