Free CISMP-V9 Exam Braindumps (page: 7)

Page 6 of 26

Which of the following statutory requirements are likely to be of relevance to all organisations no matter which sector nor geographical location they operate in?

  1. Sarbanes-Oxley.
  2. GDPR.
  3. HIPAA.
  4. FSA.

Answer(s): D



Which of the following is NOT a valid statement to include in an organisation's security policy?

  1. The policy has the support of Board and the Chief Executive.
  2. The policy has been agreed and amended to suit all third party contractors.
  3. How the organisation will manage information assurance.
  4. The compliance with legal and regulatory obligations.

Answer(s): C



In order to better improve the security culture within an organisation with a top down approach, which of the following actions at board level is the MOST effective?

  1. Appointment of a Chief Information Security Officer (CISO).
  2. Purchasing all senior executives personal firewalls.
  3. Adopting an organisation wide "clear desk" policy.
  4. Developing a security awareness e-learning course.

Answer(s): A



What form of risk assessment is MOST LIKELY to provide objective support for a security Return on Investment case?

  1. ISO/IEC 27001.
  2. Qualitative.
  3. CPNI.
  4. Quantitative

Answer(s): D






Post your Comments and Discuss BCS CISMP-V9 exam with other Community members:

CISMP-V9 Exam Discussions & Posts