Isaca CISM Practice Test - Questions Answers, Page 43
List of questions
Question 421
To improve the efficiency of the development of a new software application, security requirements should be defined:
Question 422
An information security manager is MOST likely to obtain approval for a new security project when the business case provides evidence of:
Question 423
Which of the following is the PRIMARY role of the information security manager in application development?
Question 424
Which of the following should be an information security manager s MOST important consideration when determining the priority for implementing security controls?
Question 425
Which of the following BEST minimizes information security risk in deploying applications to the production environment?
Question 426
Which of the following is the BEST way to determine the effectiveness of an incident response plan?
Question 427
The PRIMARY goal to a post-incident review should be to:
Question 428
A security incident has been reported within an organization When should an information security manager contact the information owner?
Question 429
Which of the following is the BEST way to contain an SQL injection attack that has been detected by a web application firewall?
Question 430
Which of the following should an information security manager do FIRST after discovering that a business unit has implemented a newly purchased application and bypassed the change management process?
Question