ISACA CISM Actual Free Exam Questions & Community Discussion
Which of the following is the BEST method for determining whether new risks exist in legacy systems?
Correct Answer: D
Vote an answer
Which of the following is the GREATEST challenge when developing key risk indicators (KRIs)?
Correct Answer: D
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
When establishing an information security governance framework, it is MOST important for an information security manager to understand:
Correct Answer: C
Vote an answer
Which of the following is the MOST important benefit of using a cloud access security broker when migrating to a cloud environment?
Correct Answer: B
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Management decisions concerning information security investments will be MOST effective when they are based on:
Correct Answer: C
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is the MOST important outcome of a post-incident review?
Correct Answer: A
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is MOST important for the improvement of a business continuity plan (BCP)?
Correct Answer: C
Vote an answer
An organization has acquired a new system with strict maintenance instructions and schedules. Where should this information be documented?
Correct Answer: A
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is BEST to include in a business case when the return on investment (ROI) for an information security initiative is difficult to calculate?
Correct Answer: C
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following will BEST facilitate the integration of information security governance into enterprise governance?
Correct Answer: B
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is MOST important to have in place for an organization ' s information security program to be effective?
Correct Answer: A
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following should include contact information for representatives of equipment and software vendors?
Correct Answer: B
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Several critical systems have been compromised with malware. Which of the following is the BEST strategy to eradicate this incident?
Correct Answer: B
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which of the following is the MOST appropriate action during the containment phase of a cyber incident response?
Correct Answer: A
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
When determining an acceptable risk level which of the following is the MOST important consideration?
Correct Answer: A
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
0
0
0
10
