Isaca CISM Practice Test - Questions Answers, Page 51
List of questions
Question 501
What should be the GREATEST concern for an information security manager of a large multinational organization when outsourcing data processing to a cloud service provider?
Question 502
Which of the following is the MOST important outcome of a post-incident review?
Question 503
When establishing metrics for an information security program, the BEST approach is to identify indicators that:
Question 504
Which of the following is MOST important to the effectiveness of an information security program?
Question 505
Which of the following eradication methods is MOST appropriate when responding to an incident resulting in malware on an application server?
Question 506
Which of the following is MOST important to include in an information security strategy?
Question 507
An organization uses a security standard that has undergone a major revision by the certifying authority. The old version of the standard will no longer be used for organizations wishing to maintain their certifications. Which of the following should be the FIRST
course of action?
Question 508
Which of the following is the MOST important reason for an organization to communicate to affected parties that a security incident has occurred?
Question 509
Within the confidentiality, integrity, and availability (CIA) triad, which of the following activities BEST supports the concept of confidentiality?
Question 510
Which of the following BEST enables an organization to operate smoothly with reduced capacities when service has been disrupted?
Question