ISACA CISM Actual Free Exam Questions & Community Discussion

  • Exam Code/Number: CISM
  • Exam Name/Title: Certified Information Security Manager
  • Certification Provider: ISACA
  • Corresponding Certification: Isaca Certification
  • Exam Questions: 1041
  • Updated On: Jun 01, 2026
In addition to executive sponsorship and business alignment, which of the following is MOST critical for information security governance?
Correct Answer: A Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following should be the PRIMARY focus of an organization with immature incident detection capabilities?
Correct Answer: B Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is MOST effective in gaining support for the information security strategy from senior management?
Correct Answer: B Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following BEST helps to ensure a risk response plan will be developed and executed in a timely manner?
Correct Answer: A Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following should an information security manager do FIRST when there is a conflict between the organization's information security policy and a local regulation?
Correct Answer: D Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
The fundamental purpose of establishing security metrics is to:
Correct Answer: B Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is the BEST method for determining whether a firewall has been configured to provide a comprehensive perimeter defense9
Correct Answer: A Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
A balanced scorecard MOST effectively enables information security:
Correct Answer: B Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is the BEST way to determine the gap between the present and desired state of an information security program?
Correct Answer: D Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following BEST enables an organization to evaluate the security posture of a cloud service?
Correct Answer: B Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
0
0
0
10