Isaca CISM Practice Test - Questions Answers, Page 25

List of questions
Question 241

The PRIMARY objective of performing a post-incident review is to:
Question 242

Which of the following is the MOST important consideration when defining a recovery strategy in a business continuity plan (BCP)?
Question 243

The fundamental purpose of establishing security metrics is to:
Question 244

While classifying information assets an information security manager notices that several production databases do not have owners assigned to them What is the BEST way to address this situation?
Question 245

Which of the following events would MOST likely require a revision to the information security program?
Question 246

Data entry functions for a web-based application have been outsourced to a third-party service provider who will work from a remote site Which of the following issues would be of GREATEST concern to an information security manager?
Question 247

Which of the following should be considered FIRST when recovering a compromised system that needs a complete rebuild?
Question 248

Which of the following is the BEST indication that an organization has a mature information security culture?
Question 249

What is the PRIMARY benefit to an organization that maintains an information security governance framework?
Question 250

Which of the following would be MOST effective in gaining senior management approval of security investments in network infrastructure?
Question