ExamGecko
Home Home / ISC / CAP

ISC CAP Practice Test - Questions Answers, Page 10

Question list
Search
Search

List of questions

Search

Related questions











Which of the following concepts represent the three fundamental principles of information security? Each correct answer represents a complete solution. Choose three.

A.
Privacy
A.
Privacy
Answers
B.
Integrity
B.
Integrity
Answers
C.
Availability
C.
Availability
Answers
D.
Confidentiality
D.
Confidentiality
Answers
Suggested answer: B, C, D

Which of the following governance bodies provides management, operational and technical controls to satisfy security requirements?

A.
Chief Information Security Officer
A.
Chief Information Security Officer
Answers
B.
Senior Management
B.
Senior Management
Answers
C.
Information Security Steering Committee
C.
Information Security Steering Committee
Answers
D.
Business Unit Manager
D.
Business Unit Manager
Answers
Suggested answer: B

Your organization has a project that is expected to last 20 months but the customer would really like the project completed in 18 months. You have worked on similar projects in the past and believe that you could fast track the project and reach the 18 month deadline. What increases when you fast track a project?

A.
Risks
A.
Risks
Answers
B.
Costs
B.
Costs
Answers
C.
Resources
C.
Resources
Answers
D.
Communication
D.
Communication
Answers
Suggested answer: A

The IAM/CA makes certification accreditation recommendations to the DAA. The DAA issues accreditation determinations. Which of the following are the accreditation determinations issued by the DAA?

Each correct answer represents a complete solution. Choose all that apply.

A.
IATO
A.
IATO
Answers
B.
ATO
B.
ATO
Answers
C.
IATT
C.
IATT
Answers
D.
ATT
D.
ATT
Answers
E.
DATO
E.
DATO
Answers
Suggested answer: A, B, C, E

Tom is the project manager for his organization. In his project he has recently finished the risk response planning. He tells his manager that he will now need to update the cost and schedule baselines. Why would the risk response planning cause Tom the need to update the cost and schedule baselines?

A.
New or omitted work as part of a risk response can cause changes to the cost and/or schedule baseline.
A.
New or omitted work as part of a risk response can cause changes to the cost and/or schedule baseline.
Answers
B.
Risk responses protect the time and investment of the project.
B.
Risk responses protect the time and investment of the project.
Answers
C.
Baselines should not be updated, but refined through versions.
C.
Baselines should not be updated, but refined through versions.
Answers
D.
Risk responses may take time and money to implement.
D.
Risk responses may take time and money to implement.
Answers
Suggested answer: A

During qualitative risk analysis you want to define the risk urgency assessment. All of the following are indicators of risk priority except for which one?

A.
Risk rating
A.
Risk rating
Answers
B.
Warning signs
B.
Warning signs
Answers
C.
Cost of the project
C.
Cost of the project
Answers
D.
Symptoms
D.
Symptoms
Answers
Suggested answer: C

You are the project manager of the NKQ project for your organization. You have completed the quantitative risk analysis process for this portion of the project.

What is the only output of the quantitative risk analysis process?

A.
Probability of reaching project objectives
A.
Probability of reaching project objectives
Answers
B.
Risk contingency reserve
B.
Risk contingency reserve
Answers
C.
Risk response
C.
Risk response
Answers
D.
Risk register updates
D.
Risk register updates
Answers
Suggested answer: D

You work as the project manager for Bluewell Inc. You are working on NGQQ Projectyou're your company. You have completed the risk analysis processes for the risk events. You and the project team have created risk responses for most of the identified project risks. Which of the following risk response planning techniques will you use to shift the impact of a threat to a third party, together with the responses?

A.
Risk acceptance
A.
Risk acceptance
Answers
B.
Risk avoidance
B.
Risk avoidance
Answers
C.
Risk transference
C.
Risk transference
Answers
D.
Risk mitigation
D.
Risk mitigation
Answers
Suggested answer: C

You work as a project manager for BlueWell Inc. You are currently working with the project stakeholders to identify risks in your project. You understand that the qualitative risk assessment and analysis can reflect the attitude of the project team and other stakeholders to risk. Effective assessment of risk requires management of the risk attitudes of the participants. What should you, the project manager, do with assessment of identified risks in consideration of the attitude and bias of the participants towards the project risk?

A.
Document the bias for the risk events and communicate the bias with management
A.
Document the bias for the risk events and communicate the bias with management
Answers
B.
Evaluate and document the bias towards the risk events
B.
Evaluate and document the bias towards the risk events
Answers
C.
Evaluate the bias through SWOT for true analysis of the risk events
C.
Evaluate the bias through SWOT for true analysis of the risk events
Answers
D.
Evaluate the bias towards the risk events and correct the assessment accordingly
D.
Evaluate the bias towards the risk events and correct the assessment accordingly
Answers
Suggested answer: D

Which of the following evidences are the collection of facts that, when considered together, can be used to infer a conclusion about the malicious activity/ person?

A.
Circumstantial
A.
Circumstantial
Answers
B.
Incontrovertible
B.
Incontrovertible
Answers
C.
Direct
C.
Direct
Answers
D.
Corroborating
D.
Corroborating
Answers
Suggested answer: A
Total 395 questions
Go to page: of 40