Which of the following elements of a service contract would BEST enable an organization to monitor the information security risk associated with a cloud service provider?
The information security manager of a multinational organization has been asked to consolidate the information security policies of its regional locations. Which of the following would be of
GREATEST concern?
When preventive controls to appropriately mitigate risk are not feasible, which of the following is the MOST important action for the information security manager?
Which of the following would BEST enable the timely execution of an incident response plan?
An organization provides notebook PCs, cable wire locks, smartphone access, and virtual private network (VPN) access to its remote employees. Which of the following is MOST important for the information security manager to ensure?
A serious vulnerability was detected in a business application that can be exploited by external attackers to compromise the system. What is the information security manager’s BEST course of action?
Which of the following is MOST important for an information security manager to verify when selecting a third-party forensics provider?
Which type of policy BEST helps to ensure that all employees, contractors, and third-party users receive formal communication regarding an organization’s security program?
Which of the following is the BEST indication of an effective information security awareness training program?
Which type of plan is PRIMARILY intended to reduce the potential impact of security events that may occur?
Which of the following is the BEST way to improve an organization’s ability to detect and respond to incidents?
What should be the FIRST step when an Internet of Things (loT) device in an organization ' s network is confirmed to have been hacked?
After the occurrence of a major information security incident, which of the following will BEST help an information security manager determine corrective actions?
Which of the following is a desired outcome of information security governance?
Which of the following has the GREATEST influence on the successful integration of information security within the business?
Following an information security risk assessment of a critical system, several significant issues have been identified. Which of the following is MOST important for the information security manager to confirm?
Which of the following would BEST enable senior management to integrate security into all organizational processes following an increase in cyberattacks on business applications?
Which of the following presents the GREATEST challenge when assessing the impact of emerging risk?
Which of the following is the BEST way to ensure the capability to restore clean data after a ransomware attack?
Which of the following factors would have the MOST significant impact on an organization ' s information security governance mode?