
100% Accurate Answers! May-2024 CISM Actual Real Exam Questions
Best Value Available! 2024 Realistic Verified Free CISM Exam Questions
NEW QUESTION # 145
Which of the following has the PRIMARY responsibility of ensuring an organizations information security strategy supports business goals?
- A. Information security steering committee
- B. Chief executive officer (CEO)
- C. Audit committee
- D. Chief information security officer (CISO)
Answer: A
NEW QUESTION # 146
Which of the following is the MOST important consideration when implementing an intrusion detection system (IDS)?
- A. Patching
- B. Encryption
- C. Packet filtering
- D. Tuning
Answer: D
Explanation:
Section: INFORMATION SECURITY PROGRAM DEVELOPMENT
Explanation:
If an intrusion detection system (IDS) is not properly tuned it will generate an unacceptable number of false positives and/or fail to sound an alarm when an actual attack is underway. Patching is more related to operating system hardening, while encryption and packet filtering would not be as relevant.
NEW QUESTION # 147
When integrating information security requirements into software development, which of the following practices should be FIRST in the development lifecycle?
- A. Source code review
- B. Threat modeling
- C. Dynamic code analysis
- D. Penetration testing
Answer: B
NEW QUESTION # 148
What is the GREATEST advantage of documented guidelines and operating procedures from a security perspective?
- A. Ensure compliance to security standards and regulatory requirements
- B. Ensure consistency of activities to provide a more stable environment
- C. Ensure reusability to meet compliance to quality requirements
- D. Provide detailed instructions on how to carry out different types of tasks
Answer: B
Explanation:
Explanation
Developing procedures and guidelines to ensure that business processes address information security risk is critical to the management of an information security program. Developing procedures and guidelines establishes a baseline for security program performance and consistency of security activities.
NEW QUESTION # 149
Which of the following is an inherent weakness of signature-based intrusion detection systems?
- A. A higher number of false positives
- B. Attack profiles can be easily spoofed
- C. Long duration probing will be missed
- D. New attack methods will be missed
Answer: D
Explanation:
Section: INFORMATION SECURITY PROGRAM MANAGEMENT
Explanation:
Signature-based intrusion detection systems do not detect new attack methods for which signatures have not yet been developed. False positives are not necessarily any higher, and spoofing is not relevant in this case.
Long duration probing is more likely to fool anomaly-based systems (boiling frog technique).
NEW QUESTION # 150
Which of the following is the BEST method to reduce the number of incidents of employees forwarding spam and chain e-mail messages?
- A. Setting low mailbox limits
- B. Taking disciplinary action
- C. User awareness training
- D. Acceptable use policy
Answer: C
Explanation:
Section: INFORMATION SECURITY PROGRAM MANAGEMENT
Explanation:
User awareness training would help in reducing the incidents of employees forwarding spam and chain e- mails since users would understand the risks of doing so and the impact on the organization's information system. An acceptable use policy, signed by employees, would legally address the requirements but merely having a policy is not the best measure. Setting low mailbox limits and taking disciplinary action are a reactive approach and may not help in obtaining proper support from employees.
NEW QUESTION # 151
Which is MOST important to identify when developing an effective information security strategy?
- A. Business assets to be secured
- B. Compliance requirements
- C. Potential savings resulting from security governance
- D. Control gaps that require remediation
Answer: D
NEW QUESTION # 152
A multinational organization operating in fifteen countries is considering implementing an information security program. Which factor will MOST influence the design of the Information security program?
- A. Composition of the board
- B. Cultures of the different countries
- C. IT security skills
- D. Representation by regional business leaders
Answer: B
Explanation:
Culture has a significant impact on how information security will be implemented. Representation by regional business leaders may not have a major influence unless it concerns cultural issues. Composition of the board may not have a significant impact compared to cultural issues. IT security skills are not as key or high impact in designing a multinational information security program as would be cultural issues.
NEW QUESTION # 153
It is MOST important for an information security manager to ensure that security risk assessments are performed:
- A. in response to the threat landscape.
- B. during a root cause analysis
- C. consistently throughout the enterprise.
- D. as part of the security business case.
Answer: C
NEW QUESTION # 154
An organization determines that an end-user has clicked on a malicious link. Which of the following would MOST effectively prevent similar situations from recurring?
- A. End-user access control
- B. Virus protection
- C. Updated security policies
- D. End-user training
Answer: D
Explanation:
Section: INFORMATION SECURITY PROGRAM MANAGEMENT
Explanation/Reference:
NEW QUESTION # 155
What is the GREATEST advantage of documented guidelines and operating procedures from a security perspective?
- A. Ensure compliance to security standards and regulatory requirements
- B. Ensure consistency of activities to provide a more stable environment
- C. Ensure reusability to meet compliance to quality requirements
- D. Provide detailed instructions on how to carry out different types of tasks
Answer: B
Explanation:
Section: INFORMATION SECURITY PROGRAM MANAGEMENT
Explanation:
Developing procedures and guidelines to ensure that business processes address information security risk is critical to the management of an information security program. Developing procedures and guidelines establishes a baseline for security program performance and consistency of security activities.
NEW QUESTION # 156
Which of the following is the MOST important reason for an information security review of contracts? To help ensure that:
- A. the right to audit is a requirement.
- B. confidential data are not included in the agreement.
- C. appropriate controls are included.
- D. the parties to the agreement can perform.
Answer: C
Explanation:
Explanation/Reference:
Explanation:
Agreements with external parties can expose an organization to information security risks that must be assessed and appropriately mitigated. The ability of the parties to perform is normally the responsibility of legal and the business operation involved. Confidential information may be in the agreement by necessity and. while the information security manager can advise and provide approaches to protect the information, the responsibility rests with the business and legal. Audit rights may be one of many possible controls to include in a third-party agreement, but is not necessarily a contract requirement, depending on the nature of the agreement.
NEW QUESTION # 157
The data access requirements for an application should be determined by the:
- A. legal department.
- B. compliance officer.
- C. information security manager.
- D. business owner.
Answer: D
Explanation:
Explanation
Business owners are ultimately responsible for their applications. The legal department, compliance officer and information security manager all can advise, but do not have final responsibility.
NEW QUESTION # 158
An information security manager learns that the root password of an external FTP server may be subject to brute force attacks. Which of the following would be the MOST appropriate way to reduce the likelihood of a successful attack?
- A. Disable access to the externally facing server.
- B. Block the source IP address of the attacker.
- C. Lock remote logon after multiple failed attempts.
- D. Install an intrusion detection system (IDS).
Answer: C
NEW QUESTION # 159
What is the BEST way to ensure data protection upon termination of employment?
- A. Erase all of the employee's folders
- B. Retrieve all personal computer equipment
- C. Retrieve identification badge and card keys
- D. Ensure all logical access is removed
Answer: D
Explanation:
Ensuring all logical access is removed will guarantee that the former employee will not be able to access company data and that the employee's credentials will not be misused. Retrieving identification badge and card keys would only reduce the capability to enter the building. Retrieving the personal computer equipment and the employee's folders are necessary tasks, but that should be done as a second step.
NEW QUESTION # 160
Which of the following is the MOST important objective of testing a security incident response plan?
- A. Ensure the thoroughness of the response plan
- B. Confirm that systems are recovered in the proper order
- C. Validate the business impact analysis
- D. Verify the response assumptions are valid
Answer: A
Explanation:
Section: INCIDENT MANAGEMENT AND RESPONSE
NEW QUESTION # 161
An organization is concerned with the risk of information leakage caused by incorrect use of personally owned smart devices by employees. What is the BEST way for the information security manager to mitigate the associated risk?
- A. Implement a mobile device management solution.
- B. Require employees to sign a nondisclosure agreement
- C. implement a multi-factor authentication solution.
- D. Document a bong-your-own-device (BYODJ policy.
Answer: A
NEW QUESTION # 162
Which of the following should be done FIRST when selecting performance metrics to report on the vendor risk management process?
- A. Select the data source
- B. Review the confidentiality requirements.
- C. Identify the data owner.
- D. Identify the intended audience.
Answer: C
NEW QUESTION # 163
What should be an information security manager's FIRST step when developing a business case for a new intrusion detection system (IDS) solution?
- A. Conduct a feasibility study.
- B. Perform a cost-benefit analysis.
- C. Define the issues to be addressed.
- D. Calculate the total cost of ownership (TCO).
Answer: A
NEW QUESTION # 164
Which of the following is the MOST effective way to prevent information security incidents?
- A. Deploying a consistent incident response approach
- B. Implementing a security awareness training program for employees
- C. Deploying intrusion detection tools in the network environment
- D. Implementing a security information and event management (SIEM) tool
Answer: B
Explanation:
The most effective way to prevent information security incidents is to implement a security awareness training program for employees. Security awareness training provides employees with the knowledge and skills they need to identify potential security threats and protect their systems from unauthorized access and malicious activity. Security awareness training also helps to ensure that employees understand their roles and responsibilities when it comes to information security, and can help to reduce the risk of information security incidents by making employees more aware of potential risks. Additionally, implementing a security information and event management (SIEM) tool, deploying a consistent incident response approach, and deploying intrusion detection tools in the network environment can also help to reduce the risk of security incidents
NEW QUESTION # 165
......
Actual Questions Answers Pass With Real CISM Exam Dumps: https://www.actual4dumps.com/CISM-study-material.html
Pass Your Exam Easily! CISM Real Question Answers Updated: https://drive.google.com/open?id=19aKDoSEYe5Xr2SkbvnaE--qukk94xOZB