Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Pass Using CISM Exam Dumps

Page: 38 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 149

Application data integrity risk is MOST directly addressed by a design that includes:

Options:

A.

reconciliation routines such as checksums, hash totals, and record counts.

B.

strict application of an authorized data dictionary.

C.

application log requirements such as field-level audit trails and user activity logs.

D.

access control technologies such as role-based entitlements.

Question 150

Which of the following is the BEST security control to minimize the risk of successful ransomware attacks?

Options:

A.

Application deny list

B.

Web security gateway

C.

Host intrusion detection system

D.

Application allow list

Question 151

Which of the following is the MOST critical factor for information security program success?

Options:

A.

comprehensive risk assessment program for information security

B.

The information security manager ' s knowledge of the business

C.

Security staff with appropriate training and adequate resources

D.

Ongoing audits and addressing open items

Question 152

Which of the following is the BEST indication of information security strategy alignment with the “ &

Options:

A.

Percentage of information security incidents resolved within defined service level agreements (SLAs)

B.

Percentage of corporate budget allocated to information security initiatives

C.

Number of business executives who have attended information security awareness sessions

D.

Number of business objectives directly supported by information security initiatives

Page: 38 / 86
Total 1191 questions