Summer Certification Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

PDF CISM Study Guide

Page: 34 / 86
Total 1191 questions

Certified Information Security Manager Questions and Answers

Question 133

Which of the following is the BEST way to improve an organization’s ability to detect and respond to incidents?

Options:

A.

Perform a security gap analysis.

B.

Conduct a business impact analysis (BIA).

C.

Conduct periodic awareness training.

D.

Perform network penetration testing.

Question 134

Which of the following events would MOST likely require a revision to the information security program?

Options:

A.

An increase in industry threat level .

B.

A significant increase in reported incidents

C.

A change in IT management

D.

A merger with another organization

Question 135

Which of the following should be an information security manager ' s FIRST course of action when one of the organization ' s critical third-party providers experiences a data breach?

Options:

A.

Inform the public relations officer.

B.

Monitor the third party ' s response.

C.

Invoke the incident response plan.

D.

Inform customers of the breach.

Question 136

Which of the following is the BEST way to reduce the risk of security incidents from targeted email attacks?

Options:

A.

Implement a data loss prevention (DLP) system

B.

Disable all incoming cloud mail services

C.

Conduct awareness training across the organization

D.

Require acknowledgment of the acceptable use policy

Page: 34 / 86
Total 1191 questions