Free 512-50 Exam Braindumps (page: 11)

Page 10 of 102

Which of the following is MOST important when dealing with an Information Security Steering committee:

  1. Include a mix of members from different departments and staff levels.
  2. Ensure that security policies and procedures have been vetted and approved.
  3. Review all past audit and compliance reports.
  4. Be briefed about new trends and products at each meeting by a vendor.

Answer(s): C



A business unit within your organization intends to deploy a new technology in a manner that places it in violation of existing information security standards.
What immediate action should the information security manager take?

  1. Enforce the existing security standards and do not allow the deployment of the new technology.
  2. Amend the standard to permit the deployment.
  3. If the risks associated with that technology are not already identified, perform a risk analysis to quantify the risk, and allow the business unit to proceed based on the identified risk level.
  4. Permit a 90-day window to see if an issue occurs and then amend the standard if there are no issues.

Answer(s): C



The PRIMARY objective of security awareness is to:

  1. Ensure that security policies are read.
  2. Encourage security-conscious employee behavior.
  3. Meet legal and regulatory requirements.
  4. Put employees on notice in case follow-up action for noncompliance is necessary

Answer(s): B



Which of the following is MOST likely to be discretionary?

  1. Policies
  2. Procedures
  3. Guidelines
  4. Standards

Answer(s): C






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts