Discount Offer
Go Back on CISM Exam
Available in 1, 3, 6 and 12 Months Free Updates Plans
PDF: $15 $60

Test Engine: $20 $80

PDF + Engine: $25 $99



Pass exam with Dumps4free or we will provide you with three additional months of access for FREE.

CISM Practice Test


Page 14 out of 61 Pages

Topic 1: Exam Pool A

A n employee has just reported the loss of a personal mobile device containing corporate
information. Which of the following should the information security manager do FIRST?


A.

Initiate a device reset.


B.

Initiate incident response.


C.

Disable remote access.


D.

Conduct a risk assessment.





C.
  

Disable remote access.



Which of the following will MOST effectively minimize the chance of inadvertent disclosure
of confidential information?


A.

Following the principle of least privilege


B.

Restricting the use of removable media


C.

Applying data classification rules


D.

Enforcing penalties for security policy violations





A.
  

Following the principle of least privilege



An organization's IT department needs to implement security patches. Recent reports
indicate these patches could result in stability issues. Which of the following is the
information security manager's
BEST recommendation?


A.

Research compensating security controls


B.

Research alternative software solutions


C.

Evaluate the patches in a test environment


D.

Increase monitoring after patch implementation





A.
  

Research compensating security controls



Which of the following should be the PRIMARY driver for delaying the delivery of an information security awareness program?


A.

Risk appetite


B.

Change in senior management


C.

High employee turnover


D.

Employee acceptance





A.
  

Risk appetite



A critical server for a hospital has been encrypted by ransomware. The hospital is unable to
function effectively without this server. Which of the
following would MOST effectively allow the hospital to avoid paying the ransom?


A.

A continual server replication process


B.

Employee training on ransomware


C.

A property configured firewall


D.

properly tested offline backup system





D.
  

properly tested offline backup system




Page 14 out of 61 Pages
Previous