Free 512-50 Exam Braindumps (page: 39)

Page 38 of 102

Which of the following is considered to be an IT governance framework and a supporting toolset that allows for managers to bridge the gap between control requirements, technical issues, and business risks?

  1. Control Objective for Information Technology (COBIT)
  2. Committee of Sponsoring Organizations (COSO)
  3. Payment Card Industry (PCI)
  4. Information Technology Infrastructure Library (ITIL)

Answer(s): A



Which of the following set of processes is considered to be one of the cornerstone cycles of the International Organization for Standardization (ISO) 27001 standard?

  1. Plan-Check-Do-Act
  2. Plan-Do-Check-Act
  3. Plan-Select-Implement-Evaluate
  4. SCORE (Security Consensus Operational Readiness Evaluation)

Answer(s): B



Which of the following best describes the purpose of the International Organization for Standardization (ISO) 27002 standard?

  1. To give information security management recommendations to those who are responsible for initiating, implementing, or maintaining security in their organization.
  2. To provide a common basis for developing organizational security standards
  3. To provide effective security management practice and to provide confidence in inter- organizational dealings
  4. To established guidelines and general principles for initiating, implementing, maintaining, and improving information security management within an organization

Answer(s): D



Providing oversight of a comprehensive information security program for the entire organization is the primary responsibility of which group under the InfoSec governance framework?

  1. Senior Executives
  2. Office of the Auditor
  3. Office of the General Counsel
  4. All employees and users

Answer(s): A






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts