Inspirational journeys

Follow the stories of academics and their research expeditions

CISM—Certified Information Security Manager - Part 170

Mary Smith

Wed, 15 Apr 2026

CISM—Certified Information Security Manager - Part 170

1. For an organization with a large and complex IT infrastructure, which of the following elements of a disaster recovery hot site service will require the closest monitoring?

A) Employee access
B) Audit rights
C) Systems configurations
D) Number of subscribers



2. Reviewing security objectives and ensuring the integration of security across business units is PRIMARILY the focus of the:

A) executive management
B) chief information security officer (CISO)
C) board of directors
D) steering committee.



3. Which of the following metrics is the BEST indicator of an abuse of the change management process that could compromise information security?

A) Small number of change request
B) Large percentage decrease in monthly change requests
C) Percentage of changes that include post-approval supplemental add-ons
D) High ratio of lines of code changed to total lines of code



4. Labeling information according to its security classification:

A) enhances the likelihood of people handling information securely.
B) reduces the number and type of countermeasures required.
C) reduces the need to identify baseline controls for each classification.
D) affects the consequences if information is handled insecurely.



5. Meeting which of the following security objectives BEST ensures that information is protected against unauthorized disclosure?

A) Authenticity
B) Confidentiality
C) Nonrepudiation
D) Integrity



1. Right Answer: C
Explanation:

2. Right Answer: B
Explanation:

3. Right Answer: B
Explanation:

4. Right Answer: D
Explanation:

5. Right Answer: B
Explanation:

0 Comments

Leave a comment