Isaca CISM Practice Test - Questions Answers, Page 63

List of questions
Question 621

During which phase of an incident response plan is the root cause determined?
Question 622

Which of the following BEST helps to enable the desired information security culture within an organization?
Question 623

Which of the following is MOST appropriate to communicate to senior management regarding information risk?
Question 624

Which of the following is the BEST way to determine the gap between the present and desired state of an information security program?
Question 625

Which of the following should be the FIRST step when performing triage of a malware incident?
Question 626

An information security manager has become aware that a third-party provider is not in compliance with the statement of work (SOW). Which of the following is the BEST course of action?
Question 627

A newly appointed information security manager has been asked to update all security-related policies and procedures that have been static for five years or more. What should be done NEXT?
Question 628

Which of the following is the PRIMARY responsibility of the information security function when an organization adopts emerging technologies?
Question 629

An organization is planning to outsource network management to a service provider. Including which of the following in the contract would be the MOST effective way to mitigate information security risk?
Question 630

Which of the following is the MOST effective way to convey information security responsibilities across an organization?
Question