Rate this post

[Jun 04, 2022] Latest Information Security Management ISMP Actual Free Exam Questions

Information Security Management ISMP Dumps Updated Practice Test and 31 unique questions

NO.15 The information security manager is writing the Information Security Management System (ISMS) documentation. The controls that are to be implemented must be described in one of the phases of the Plan-Do- Check-Act (PDCA) cycle of the ISMS.
In which phase should these controls be described?

 
 
 
 

NO.16 What is a risk treatment strategy?

 
 
 
 

NO.17 It is important that an organization is able to prove compliance with information standards and legislation. One of the most important areas is documentation concerning access management. This process contains a number of activities including granting rights, monitoring identity status, logging, tracking access and removing rights. Part of these controls are audit trail records which may be used as evidence for both internal and external audits.
What component of the audit trail is the most important for an external auditor?

 
 
 

NO.18 A risk manager is asked to perform a complete risk assessment for a company.
What is the best method to identify most of the threats to the company?

 
 
 

NO.19 The security manager of a global company has decided that a risk assessment needs to be completed across the company.
What is the primary objective of the risk assessment?

 
 
 
 

NO.20 An employee has worked on the organizational risk assessment. The goal of the assessment is not to bring residual risks to zero, but to bring the residual risks in line with an organization’s risk appetite.
When has the risk assessment program accomplished its primary goal?

 
 
 
 

NO.21 When is revision of an employee’s access rights mandatory?

 
 
 
 

NO.22 Security monitoring is an important control measure to make sure that the required security level is maintained. In order to realize 24/7 availability of the service, this service is outsourced to a partner in the cloud.
What should be an important control in the contract?

 
 
 
 

NO.23 In a company a personalized smart card is used for both physical and logical access control.
What is the main purpose of the person’s picture on the smart card?

 
 
 
 

NO.24 Who should be asked to check compliance with the information security policy throughout the company?

 
 
 

NO.25 The Board of Directors of an organization is accountable for obtaining adequate assurance.
Who should be responsible for coordinating the information security awareness campaigns?

 
 
 
 

NO.26 In a company the IT strategy is migrating towards a Service Oriented Architecture (SOA) so that migrating to the cloud is better feasible in the future. The security architect is asked to make a first draft of the security architecture.
Which elements should the security architect draft?

 
 
 

Verified ISMP dumps Q&As – 100% Pass from SurePassExams: https://www.surepassexams.com/ISMP-exam-bootcamp.html

         

Related Links: myportal.utt.edu.tt myportal.utt.edu.tt myportal.utt.edu.tt myportal.utt.edu.tt www.stes.tyc.edu.tw myportal.utt.edu.tt

Leave a Reply

Your email address will not be published. Required fields are marked *

Enter the text from the image below