Weekend Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Legit CISM Exam Download

Page: 11 / 69
Total 920 questions

Certified Information Security Manager Questions and Answers

Question 41

When establishing metrics for an information security program, the BEST approach is to identify indicators that:

Options:

A.

reduce information security program spending.

B.

support major information security initiatives.

C.

reflect the corporate risk culture.

D.

demonstrate the effectiveness of the security program.

Question 42

Which of the following is MOST important to consider when defining control objectives?

Options:

A.

Industry best practices

B.

An information security framework

C.

Control recommendations from a recent audit

D.

The organization's risk appetite

Question 43

Which of the following is the FIRST step to establishing an effective information security program?

Options:

A.

Conduct a compliance review.

B.

Assign accountability.

C.

Perform a business impact analysis (BIA).

D.

Create a business case.

Question 44

An information security policy was amended recently to support an organization's new information security strategy. Which of the following should be the information security manager's NEXT step?

Options:

A.

Evaluate the alignment with business strategy.

B.

Review technical controls.

C.

Update standards and procedures.

D.

Refresh the security training program.

Page: 11 / 69
Total 920 questions