The MAIN reason for having senior management review and approve an information security strategic plan is to ensure:
What should be the GREATEST concern for an information security manager of a large multinational organization when outsourcing data processing to a cloud service provider?
An online bank identifies a successful network attack in progress. The bank should FIRST:
Which of the following will BEST enable an organization to meet incident response requirements when outsourcing its incident response function?
Which of the following should be the PRIMARY objective when establishing a new information security program?
During the implementation of a new system, which of the following processes proactively minimizes the likelihood of disruption, unauthorized alterations, and errors?
When properly implemented, secure transmission protocols protect transactions:
Which of the following is BEST used to determine the maturity of an information security program?
A daily monitoring report reveals that an IT employee made a change to a firewall rule outside of the change control process. The information security manager's FIRST step in addressing the issue should be to:
Which of the following is MOST useful to an information security manager when determining the need to escalate an incident to senior?
Which of the following is the GREATEST threat posed by quantum computing technology for information security?
Which of the following is the BEST strategy when determining an organization's approach to risk treatment?
Which of the following BEST enables the capability of an organization to sustain the delivery of products and services within acceptable time frames and at predefined capacity during a disruption?
An organization recently activated its business continuity plan (BCP). Employees were notified during the event, but some did not fully follow the communications plan. What is the BEST way to prevent a recurrence?
An information security manager has become aware that a third-party provider is not in compliance with the statement of work (SOW). Which of the following is the BEST course of action?
Which of the following is the BEST way to compete for funding for an information security program in an organization with limited resources?
Which of the following is MOST important to have in place for an organization's information security program to be effective?
An information security manager is working to incorporate media communication procedures into the security incident communication plan. It would be MOST important to include: