Go Back on 712-50 Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99

712-50 Practice Test


Page 2 out of 89 Pages

Topic 1: Governance (Policy, Legal & Compliance)

What should an organization do to ensure that they have a sound Business Continuity (BC) Plan?


A.

Test every three years to ensure that things work as planned


B.

Conduct periodic tabletop exercises to refine the BC plan


C.

Outsource the creation and execution of the BC plan to a third party vendor


D.

Conduct a Disaster Recovery (DR) exercise every year to test the plan





B.
  

Conduct periodic tabletop exercises to refine the BC plan



After a risk assessment is performed, a particular risk is considered to have the potential of costing the organization 1.2 Million USD. This is an example of


A.

Risk Tolerance


B.

Qualitative risk analysis


C.

Risk Appetite


D.

Quantitative risk analysis





D.
  

Quantitative risk analysis



An organization has defined a set of standard security controls. This organization has also defined the circumstances and conditions in which they must be applied. What is the NEXT logical step in applying the controls in the organization?


A.

Determine the risk tolerance


B.

Perform an asset classification


C.

Create an architecture gap analysis


D.

Analyze existing controls on systems





B.
  

Perform an asset classification



A global retail company is creating a new compliance management process. Which of the following regulations is of MOST importance to be tracked and managed by this process?


A.

Information Technology Infrastructure Library (ITIL)


B.

International Organization for Standardization (ISO) standards


C.

Payment Card Industry Data Security Standards (PCI-DSS)


D.

National Institute for Standards and Technology (NIST) standard





C.
  

Payment Card Industry Data Security Standards (PCI-DSS)



Which of the following provides an audit framework?


A.

Control Objectives for IT (COBIT)


B.

Payment Card Industry-Data Security Standard (PCI-DSS)


C.

International Organization Standard (ISO) 27002


D.

National Institute of Standards and Technology (NIST) SP 800-30





A.
  

Control Objectives for IT (COBIT)




Page 2 out of 89 Pages
Previous