Isaca CISM Practice Test - Questions Answers, Page 30

List of questions
Question 291

Management has announced the acquisition of a new company. The information security manager of the parent company is concerned that conflicting access rights may cause critical information to be exposed during the integration of the two companies. To BEST address this concern, the information security manager should:
Question 292

An organization faces severe fines and penalties if not in compliance with local regulatory requirements by an established deadline. Senior management has asked the information security manager to prepare an action plan to achieve compliance.
Which of the following would provide the MOST useful information for planning purposes?
Question 293

Which of the following documents should contain the INITIAL prioritization of recovery of services?
Question 294

A newly appointed information security manager of a retailer with multiple stores discovers an HVAC (heating, ventilation, and air conditioning) vendor has remote access to the stores to enable real-time monitoring and equipment diagnostics. Which of the following should be the information security manager's FIRST course of action?
Question 295

A balanced scorecard MOST effectively enables information security:
Question 296

When creating an incident response plan, the PRIMARY benefit of establishing a clear definition of a security incident is that it helps to:
Question 297

Which of the following is the PRIMARY responsibility of an information security manager in an organization that is implementing the use of company-owned mobile devices in its operations?
Question 298

An organization permits the storage and use of its critical and sensitive information on employee-owned smartphones. Which of the following is the BEST security control?
Question 299

Labeling information according to its security classification:
Question 300

Which of the following is the GREATEST benefit of information asset classification?
Question