Free EC-Council 712-50 Exam Braindumps (page: 18)

When measuring the effectiveness of an Information Security Management System which one of the following would be MOST LIKELY used as a metric framework?

  1. ISO 27001
  2. ISO 27004
  3. PRINCE2
  4. ITILv3

Answer(s): B



The purpose of NIST SP 800-53 as part of the NIST System Certification and Accreditation Project is to establish a set of standardized, minimum security controls for IT systems addressing low, moderate, and high levels of concern for:

  1. Integrity and Availability
  2. Assurance, Compliance and Availability
  3. International Compliance
  4. Confidentiality, Integrity and Availability

Answer(s): D



An organization is required to implement background checks on all employees with access to databases containing credit card information. This is considered a security_____________.

  1. Technical control
  2. Management control
  3. Procedural control
  4. Administrative control

Answer(s): B



Information security policies should be reviewed_____________.

  1. by the internal audit semiannually
  2. by the CISO when new systems are brought online
  3. by the Incident Response team after an audit
  4. by stakeholders at least annually

Answer(s): D



Viewing page 18 of 115
Viewing questions 69 - 72 out of 468 questions



Post your Comments and Discuss EC-Council 712-50 exam prep with other Community members:

712-50 Exam Discussions & Posts