EC-Council 512-50 Exam Questions
Information Security Manager (Page 3 )

Updated On: 16-Feb-2026

The PRIMARY objective for information security program development should be:

  1. Reducing the impact of the risk to the business.
  2. Establishing strategic alignment with business continuity requirements
  3. Establishing incident response programs.
  4. Identifying and implementing the best security solutions.

Answer(s): A



Which of the following should be determined while defining risk management strategies?

  1. Organizational objectives and risk tolerance
  2. Risk assessment criteria
  3. IT architecture complexity
  4. Enterprise disaster recovery plans

Answer(s): A



Who in the organization determines access to information?

  1. Legal department
  2. Compliance officer
  3. Data Owner
  4. Information security officer

Answer(s): C



Which of the following is a benefit of information security governance?

  1. Questioning the trust in vendor relationships.
  2. Increasing the risk of decisions based on incomplete management information.
  3. Direct involvement of senior management in developing control processes
  4. Reduction of the potential for civil and legal liability

Answer(s): D



Which of the following is the MOST important benefit of an effective security governance process?

  1. Reduction of liability and overall risk to the organization
  2. Better vendor management
  3. Reduction of security breaches
  4. Senior management participation in the incident response process

Answer(s): A






Post your Comments and Discuss EC-Council 512-50 exam dumps with other Community members:

Join the 512-50 Discussion