Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Passed Exam Today CISM

Page: 9 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 33

Which of the following risk scenarios is MOST likely to emerge from a supply chain attack?

Options:

A.

Compromise of critical assets via third-party resources

B.

Unavailability of services provided by a supplier

C.

Loss of customers due to unavailability of products

D.

Unreliable delivery of hardware and software resources by a supplier

Question 34

Which of the following should be done FIRST when establishing an information security governance framework?

Options:

A.

Evaluate information security tools and skills relevant for the environment.

B.

Gain an understanding of the business and cultural attributes.

C.

Contract a third party to conduct an independent review of the program.

D.

Conduct a cost-benefit analysis of the framework.

Question 35

Information security policies should PRIMARILY reflect alignment with:

Options:

A.

an information security framework.

B.

industry best practices.

C.

data security standards.

D.

senior management intent.

Question 36

Which of the following should be done FIRST when developing a business case for an information security initiative in a highly regulated environment?

Options:

A.

Benchmark against competitors

B.

Consult legal counsel

C.

Perform a feasibility study

D.

Conduct a risk assessment

Page: 9 / 86
Total 1191 questions