Isaca CISM Practice Test - Questions Answers, Page 51

List of questions
Question 501

What should be the GREATEST concern for an information security manager of a large multinational organization when outsourcing data processing to a cloud service provider?
Question 502

Which of the following is the MOST important outcome of a post-incident review?
Question 503

When establishing metrics for an information security program, the BEST approach is to identify indicators that:
Question 504

Which of the following is MOST important to the effectiveness of an information security program?
Question 505

Which of the following eradication methods is MOST appropriate when responding to an incident resulting in malware on an application server?
Question 506

Which of the following is MOST important to include in an information security strategy?
Question 507

An organization uses a security standard that has undergone a major revision by the certifying authority. The old version of the standard will no longer be used for organizations wishing to maintain their certifications. Which of the following should be the FIRST
course of action?
Question 508

Which of the following is the MOST important reason for an organization to communicate to affected parties that a security incident has occurred?
Question 509

Within the confidentiality, integrity, and availability (CIA) triad, which of the following activities BEST supports the concept of confidentiality?
Question 510

Which of the following BEST enables an organization to operate smoothly with reduced capacities when service has been disrupted?
Question