EXIN ISMP Exam Practice Questions (P. 2)
- Full Access (30 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #6
A risk manager is asked to perform a complete risk assessment for a company.
What is the best method to identify most of the threats to the company?
What is the best method to identify most of the threats to the company?
- AHave a brainstorm with representatives of all stakeholders
- BInterview top management
- CSend a checklist for threat identification to all staff involved in information security.
Correct Answer:
A
A
send
light_mode
delete
Question #7
It is important that an organization is able to prove compliance with information standards and legislation. One of the most important areas is documentation concerning access management. This process contains a number of activities including granting rights, monitoring identity status, logging, tracking access and removing rights. Part of these controls are audit trail records which may be used as evidence for both internal and external audits.
What component of the audit trail is the most important for an external auditor?
What component of the audit trail is the most important for an external auditor?
- AAccess criteria and access control mechanisms
- BLog review, consolidation and management
- CSystem-specific policies for business systems
Correct Answer:
A
A
send
light_mode
delete
Question #8
What is the main reason to use a firewall to separate two parts of your internal network?
- ATo control traffic intensity between two network segments
- BTo decrease network loads
- CTo enable the installation of an Intrusion Detection System
- DTo separate areas with different confidentiality requirements
Correct Answer:
D
D
send
light_mode
delete
Question #9
A company's webshop offers prospects and customers the possibility to search the catalog and place orders around the clock. In order to satisfy the needs of both customer and business several requirements have to be met. One of the criteria is data classification.
What is the most important classification aspect of the unit price of an object in a 24h webshop?
What is the most important classification aspect of the unit price of an object in a 24h webshop?
send
light_mode
delete
Question #10
In a company the IT strategy is migrating towards a Service Oriented Architecture (SOA) so that migrating to the cloud is better feasible in the future. The security architect is asked to make a first draft of the security architecture.
Which elements should the security architect draft?
Which elements should the security architect draft?
- AManagement and control of the security services
- BThe information security policy, the risk assessment and the controls in the security services
- CWhich security services are provided and in which supporting architectures are they defined
Correct Answer:
C
C
send
light_mode
delete
All Pages