Free 512-50 Exam Braindumps (page: 12)

Page 11 of 102

Why is it vitally important that senior management endorse a security policy?

  1. So that they will accept ownership for security within the organization.
  2. So that employees will follow the policy directives.
  3. So that external bodies will recognize the organizations commitment to security.
  4. So that they can be held legally accountable.

Answer(s): A



When would it be more desirable to develop a set of decentralized security policies and procedures within an enterprise environment?

  1. When there is a need to develop a more unified incident response capability.
  2. When the enterprise is made up of many business units with diverse business activities, risks profiles and regulatory requirements.
  3. When there is a variety of technologies deployed in the infrastructure.
  4. When it results in an overall lower cost of operating the security program.

Answer(s): B



What is the relationship between information protection and regulatory compliance?

  1. That all information in an organization must be protected equally.
  2. The information required to be protected by regulatory mandate does not have to be identified in the organizations data classification policy.
  3. That the protection of some information such as National ID information is mandated by regulation and other information such as trade secrets are protected based on business need.
  4. There is no relationship between the two.

Answer(s): C



Regulatory requirements typically force organizations to implement

  1. Mandatory controls
  2. Discretionary controls
  3. Optional controls
  4. Financial controls

Answer(s): A






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts