Free CISMP-V9 Exam Braindumps (page: 6)

Page 6 of 26

Which of the following statutory requirements are likely to be of relevance to all organisations no matter which sector nor geographical location they operate in?

  1. Sarbanes-Oxley.
  2. GDPR.
  3. HIPAA.
  4. FSA.

Answer(s): D



Which of the following is NOT a valid statement to include in an organisation's security policy?

  1. The policy has the support of Board and the Chief Executive.
  2. The policy has been agreed and amended to suit all third party contractors.
  3. How the organisation will manage information assurance.
  4. The compliance with legal and regulatory obligations.

Answer(s): C



In order to better improve the security culture within an organisation with a top down approach, which of the following actions at board level is the MOST effective?

  1. Appointment of a Chief Information Security Officer (CISO).
  2. Purchasing all senior executives personal firewalls.
  3. Adopting an organisation wide "clear desk" policy.
  4. Developing a security awareness e-learning course.

Answer(s): A



What form of risk assessment is MOST LIKELY to provide objective support for a security Return on Investment case?

  1. ISO/IEC 27001.
  2. Qualitative.
  3. CPNI.
  4. Quantitative

Answer(s): D



Page 6 of 26



Post your Comments and Discuss BCS CISMP-V9 exam with other Community members:

bob commented on September 09, 2024
clarification on the level of standards and policy
UNITED STATES
upvote

Lovedeep commented on March 30, 2024
To other guys out there who are going to take this exam. I want to share with you that this exam is extremely hard. Unless you study a lot and use these exam questions dumps you are not going to pass. I pass my exam after 2 attempt but these questions are word by word and was a live saver.
UNITED KINGDOM
upvote

Noobtastic commented on March 29, 2024
In a security governance framework, which of the following publications would be at the HIGHEST level? the answer should be policy
UNITED KINGDOM
upvote

dave commented on March 29, 2024
Question 8 from the official BCS text book "A policy is a high-level statement of an organisation’s values, goals and objectives in a specific area"
Anonymous
upvote

dave commented on March 29, 2024
Question 2 answer is wrong Availability is not one of AAA
Anonymous
upvote

sarra commented on January 17, 2024
the aaa triad in information security is authentication, accounting and authorisation so the answer should be d 1, 3 and 5.
UNITED KINGDOM
upvote

Nikki commented on November 07, 2023
The AAA Triad in Information Security is Authentication, Accounting and Authorisation so the answer should be D 1, 3 and 5.
UNITED KINGDOM
upvote