Which of the following is the GREATEST privacy concern when personal data is collected and processed?
A small organization with limited budget hires a new information security manager who finds the same IT staff member is assigned the responsibility of system administrator, security administrator, database administrator (DBA), and application administrator What is the manager ' s BEST course of action?
An organization has received complaints from users that some of their files have been encrypted. These users are receiving demands for money to decrypt the files. Which of the following would be the BEST course of action?
Which of the following is the BEST method to ensure compliance with password standards?
Which type of backup BEST enables an organization to recover data after a ransomware attack?
Which of the following is the MOST critical consideration when shifting IT operations to an Infrastructure as a Service (laaS) model hosted in a foreign country?
Which of the following provides the MOST comprehensive insight into ongoing threats facing an organization?
Which of the following is the BEST technical defense against unauthorized access to a corporate network through social engineering?
After updating password standards, an information security manager is alerted by various application administrators that the applications they support are incapable of enforcing these standards. The information security manager ' s FIRST course of action should be to:
When management changes the enterprise business strategy which of the following processes should be used to evaluate the existing information security controls as well as to select new information security controls?
Recommendations for enterprise investment in security technology should be PRIMARILY based on:
Which of the following BEST enables an organization to enhance its incident response plan processes and procedures?
An online bank identifies a successful network attack in progress. The bank should FIRST:
Which of the following should be the PRIMARY objective of the information security incident response process?
What should an information security manager verify FIRST when reviewing an information asset management program?
Which of the following should be the MOST important consideration when establishing information security policies for an organization?
Which of the following is the MOST effective way to protect the authenticity of data in transit?
Which of the following roles is MOST appropriate to determine access rights for specific users of an application?
Which of the following is the MOST important consideration when determining which type of failover site to employ?
Which of the following eradication methods is MOST appropriate when responding to an incident resulting in malware on an application server?