Free EC-Council 712-50 Exam Braindumps (page: 16)

Which of the following is MOST important when dealing with an Information Security Steering committee?

  1. Ensure that security policies and procedures have been vetted and approved.
  2. Review all past audit and compliance reports.
  3. Include a mix of members from different departments and staff levels.
  4. Be briefed about new trends and products at each meeting by a vendor.

Answer(s): B



Risk that remains after risk mitigation is known as_____________.

  1. Accepted risk
  2. Residual risk
  3. Non-tolerated risk
  4. Persistent risk

Answer(s): B



An organization is looking for a framework to measure the efficiency and effectiveness of their Information Security Management System.

Which of the following international standards can BEST assist this organization?

  1. Payment Card Industry Data Security Standards (PCI-DSS)
  2. International Organization for Standardizations – 27005 (ISO-27005)
  3. International Organization for Standardizations – 27004 (ISO-27004)
  4. Control Objectives for Information Technology (COBIT)

Answer(s): C



When would it be more desirable to develop a set of decentralized security policies and procedures within an enterprise environment?

  1. When there is a variety of technologies deployed in the infrastructure.
  2. When it results in an overall lower cost of operating the security program.
  3. When there is a need to develop a more unified incident response capability.
  4. When the enterprise is made up of many business units with diverse business activities, risks profiles and regulatory requirements.

Answer(s): D



Viewing page 16 of 115
Viewing questions 61 - 64 out of 468 questions



Post your Comments and Discuss EC-Council 712-50 exam prep with other Community members:

712-50 Exam Discussions & Posts