ExamGecko
Home / ISC / CAP / List of questions
Ask Question

ISC CAP Practice Test - Questions Answers, Page 20

Add to Whishlist

List of questions

Question 191

Report Export Collapse

Which of the following individuals is responsible for monitoring the information system environment for factors that can negatively impact the security of the system and its accreditation?

Chief Risk Officer
Chief Risk Officer
Chief Information Security Officer
Chief Information Security Officer
Information System Owner
Information System Owner
Chief Information Officer
Chief Information Officer
Suggested answer: C
asked 18/09/2024
owais mansoor
52 questions

Question 192

Report Export Collapse

Walter is the project manager of a large construction project. He'll be working with several vendors on the project. Vendors will be providing materials and labor for several parts of the project. Some of the works in the project are very dangerous so Walter has implemented safety requirements for all of the vendors and his own project team. Stakeholders for the project have added new requirements, which have caused new risks in the project. A vendor has identified a new risk that could affect the project if it comes into fruition. Walter agrees with the vendor and has updated the risk register and created potential risk responses to mitigate the risk. What should Walter also update in this scenario considering the risk event?

Project management plan
Project management plan
Project contractual relationship with the vendor
Project contractual relationship with the vendor
Project communications plan
Project communications plan
Project scope statement
Project scope statement
Suggested answer: A
asked 18/09/2024
Mathijs Sijm
32 questions

Question 193

Report Export Collapse

Which of the following is a temporary approval to operate based on an assessment of the implementation status of the assigned IA Controls?

IATT
IATT
ATO
ATO
IATO
IATO
DATO
DATO
Suggested answer: C
asked 18/09/2024
Daniela Const
47 questions

Question 194

Report Export Collapse

SIMULATION

Fill in the blank with an appropriate word.

________ ensures that the information is not disclosed to unauthorized persons or processes.

Confidentiality
Confidentiality
Suggested answer: A
asked 18/09/2024
Bobby Pick
40 questions

Question 195

Report Export Collapse

Nancy is the project manager of the NHH project. She and the project team have identified a significant risk in the project during the qualitative risk analysis process. Bob is familiar with the technology that the risk is affecting and proposes to Nancy a solution to the risk event. Nancy tells Bob that she has noted his response, but the risk really needs to pass through the quantitative risk analysis process before creating responses. Bob disagrees and ensures Nancy that his response is most appropriate for the identified risk. Who is correct in this scenario?

Bob is correct. Bob is familiar with the technology and the risk event so his response should be implemented.
Bob is correct. Bob is familiar with the technology and the risk event so his response should be implemented.
Nancy is correct. Because Nancy is the project manager she can determine the correct procedures for risk analysis and risk responses. In addition, she has noted the risk response that Bob recommends.
Nancy is correct. Because Nancy is the project manager she can determine the correct procedures for risk analysis and risk responses. In addition, she has noted the risk response that Bob recommends.
Nancy is correct. All risks of significant probability and impact should pass the quantitative risk analysis process before risk responses are created.
Nancy is correct. All risks of significant probability and impact should pass the quantitative risk analysis process before risk responses are created.
Bob is correct. Not all risk events have to pass the quantitative risk analysis process to develop effective risk responses.
Bob is correct. Not all risk events have to pass the quantitative risk analysis process to develop effective risk responses.
Suggested answer: D
asked 18/09/2024
Oky ramadhani
49 questions

Question 196

Report Export Collapse

Which of the following is a standard that sets basic requirements for assessing the effectiveness of computer security controls built into a computer system?

FITSAF
FITSAF
TCSEC
TCSEC
FIPS
FIPS
SSAA
SSAA
Suggested answer: B
asked 18/09/2024
Alemu, Fissha
40 questions

Question 197

Report Export Collapse

The Phase 4 of DITSCAP C&A is known as Post Accreditation. This phase starts after the system has been accredited in Phase 3. What are the process activities of this phase?

Each correct answer represents a complete solution. Choose all that apply.

Maintenance of the SSAA
Maintenance of the SSAA
Compliance validation
Compliance validation
Change management
Change management
System operations
System operations
Security operations
Security operations
Continue to review and refine the SSAA
Continue to review and refine the SSAA
Suggested answer: A, B, C, D, E
asked 18/09/2024
TAMPO DARKOI
47 questions

Question 198

Report Export Collapse

The only output of the perform qualitative risk analysis are risk register updates. When the project manager updates the risk register he will need to include several pieces of information including all of the following except for which one?

Trends in qualitative risk analysis
Trends in qualitative risk analysis
Risk probability-impact matrix
Risk probability-impact matrix
Watchlist of low-priority risks
Watchlist of low-priority risks
Risks grouped by categories
Risks grouped by categories
Suggested answer: B
asked 18/09/2024
Ranjan Gupta
37 questions

Question 199

Report Export Collapse

Billy is the project manager of the HAR Project and is in month six of the project. The project is scheduled to last for 18 months. Management asks Billy how often the project team is participating in risk reassessment in this project. What should Billy tell management if he's following the best practices for risk management?

At every status meeting the project team project risk management is an agenda item.
At every status meeting the project team project risk management is an agenda item.
Project risk management happens at every milestone.
Project risk management happens at every milestone.
Project risk management has been concluded with the project planning.
Project risk management has been concluded with the project planning.
Project risk management is scheduled for every month in the 18-month project.
Project risk management is scheduled for every month in the 18-month project.
Suggested answer: A
asked 18/09/2024
Lester Ballesteros
46 questions

Question 200

Report Export Collapse

Rob is the project manager of the IDLK Project for his company. This project has a budget of $5,600,000 and is expected to last 18 months. Rob has learned that a new law may affect how the project is allowed to proceed - even though the organization has already invested over $750,000 in the project. What risk response is the most appropriate for this instance?

Transference
Transference
Mitigation
Mitigation
Enhance
Enhance
Acceptance
Acceptance
Suggested answer: D
asked 18/09/2024
Mario Herrera GonzÑlez
52 questions
Total 395 questions
Go to page: of 40
Search

Related questions