Free 512-50 Exam Braindumps (page: 44)

Page 43 of 102

The mean time to patch, number of virus outbreaks prevented, and number of vulnerabilities mitigated are examples of what type of performance metrics?

  1. Risk metrics
  2. Management metrics
  3. Operational metrics
  4. Compliance metrics

Answer(s): C



When you develop your audit remediation plan what is the MOST important criteria?

  1. To remediate half of the findings before the next audit.
  2. To remediate all of the findings before the next audit.
  3. To validate that the cost of the remediation is less than the risk of the finding.
  4. To validate the remediation process with the auditor.

Answer(s): C



Control Objectives for Information and Related Technology (COBIT) is which of the following?

  1. An Information Security audit standard
  2. An audit guideline for certifying secure systems and controls
  3. A framework for Information Technology management and governance
  4. A set of international regulations for Information Technology governance

Answer(s): C



A Chief Information Security Officer received a list of high, medium, and low impact audit findings.
Which of the following represents the BEST course of action?

  1. If the findings impact regulatory compliance, try to apply remediation that will address the most findings for the least cost.
  2. If the findings do not impact regulatory compliance, remediate only the high and medium risk findings.
  3. If the findings impact regulatory compliance, remediate the high findings as quickly as possible.
  4. If the findings do not impact regulatory compliance, review current security controls.

Answer(s): C






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts