Which of the following defines the triggers within a business continuity plan (BCP)? @
Which of the following would be the MOST effective way to present quarterly reports to the board on the status of the information security program?
A user reports a stolen personal mobile device that stores sensitive corporate data. Which of the following will BEST minimize the risk of data exposure?
During the due diligence phase of an acquisition, the MOST important course of action for an information security manager is to:
An employee who is a remote user has copied financial data from the corporate server to a laptop using virtual private network (VPN) connectivity. Which of the following is the MOST important factor to determine if it should be classified as a data leakage incident?
After a recovery from a successful malware attack, instances of the malware continue to be discovered. Which phase of incident response was not successful?
Which of the following should be the FIRST consideration for an information security manager after a security incident has been confirmed?
Which of the following is the BEST course of action when an information security manager identifies that systems are vulnerable to emerging threats?
An organization has updated its business goals in the middle of the fiscal year to respond to changes in market conditions. Which of the following is MOST important for the information security manager to update in support of the new goals?
Which of the following risk scenarios is MOST likely to emerge from a supply chain attack?
Which of the following BEST enables an organization to evaluate the security posture of a cloud service?
When investigating an information security incident, details of the incident should be shared:
Of the following, whose input is of GREATEST importance in the development of an information security strategy?
Which of the following should an information security manager do FIRST when creating an organization ' s disaster recovery plan (DRP)?
Which of the following is the BEST reason to implement a comprehensive information security management system?
To ensure continuous alignment with the organizational strategy
To gain senior management support for the information security program
To support identification of key risk indicators (KRIs)
Which of the following is the MOST effective way to prevent information security incidents?
Which of the following should be the FIRST consideration when developing a strategy for protecting an organization ' s data?