Isaca CISM Practice Test - Questions Answers, Page 32

List of questions
Question 311

An information security manager has been tasked with developing materials to update the board, regulatory agencies, and the media about a security incident. Which of the following should the information security manager do FIRST?
Question 312

Which of the following would be MOST useful to help senior management understand the status of information security compliance?
Question 313

An information security manager is assisting in the development of the request for proposal (RFP) for a new outsourced service. This will require the third party to have access to critical business information. The security manager should focus PRIMARILY on defining:
Question 314

Which of the following BEST facilitates the effective execution of an incident response plan?
Question 315

Which of the following should be the PRIMARY basis for a severity hierarchy for information security incident classification?
Question 316

The MOST important element in achieving executive commitment to an information security governance program is:
Question 317

An organization plans to leverage popular social network platforms to promote its products and services. Which of the following is the BEST course of action for the information security manager to support this initiative?
Question 318

A risk owner has accepted a large amount of risk due to the high cost of controls. Which of the following should be the information security manager's PRIMARY focus in this situation?
Question 319

Which is following should be an information security manager's PRIMARY focus during the development of a critical system storing highly confidential data?
Question 320

An organization has identified an increased threat of external brute force attacks in its environment. Which of the following is the MOST effective way to mitigate this risk to the organization's critical systems?
Question