Isaca CISM Practice Test - Questions Answers, Page 59
List of questions
Related questions
An organization's information security team presented the risk register at a recent information security steering committee meeting. Which of the following should be of MOST concern to the committee?
Which of the following BEST illustrates residual risk within an organization?
After the occurrence of a major information security incident, which of the following will BEST help an information security manager determine corrective actions?
Before approving the implementation of a new security solution, senior management requires a business case. Which of the following would BEST support the justification for investment?
To inform a risk treatment decision, which of the following should the information security manager compare with the organization's risk appetite?
The PRIMARY objective of timely declaration of a disaster is to:
What should an information security manager verify FIRST when reviewing an information asset management program?
Company A, a cloud service provider, is in the process of acquiring Company B to gain new benefits by incorporating their technologies within its cloud services.
Which of the following should be the PRIMARY focus of Company A's information security manager?
An organization learns that a third party has outsourced critical functions to another external provider. Which of the following is the information security manager's MOST important course of action?
During the due diligence phase of an acquisition, the MOST important course of action for an information security manager is to:
Question