EC-Council 712-50 Exam
EC-Council Certified CISO (Page 3 )

Updated On: 15-Feb-2026

Which of the following is the MAIN reason to follow a formal risk management process in an organization that hosts and uses privately identifiable information (PII) as part of their business models and processes?

  1. Need to comply with breach disclosure laws
  2. Fiduciary responsibility to safeguard credit information
  3. Need to transfer the risk associated with hosting PII data
  4. Need to better understand the risk associated with using PII data

Answer(s): D



A method to transfer risk is to_____________.

  1. Implement redundancy
  2. Move operations to another region
  3. Align to business operations
  4. Purchase breach insurance

Answer(s): D



An organization licenses and uses personal information for business operations, and a server containing that information has been compromised.

What kind of law would require notifying the owner or licensee of this incident?

  1. Consumer right disclosure
  2. Data breach disclosure
  3. Special circumstance disclosure
  4. Security incident disclosure

Answer(s): B



Why is it vitally important that senior management endorse a security policy?

  1. So that employees will follow the policy directives.
  2. So that they can be held legally accountable.
  3. So that external bodies will recognize the organizations commitment to security.
  4. So that they will accept ownership for security within the organization.

Answer(s): D



Which of the following is of MOST importance when security leaders of an organization are required to align security to influence the culture of an organization?

  1. Understand the business goals of the organization
  2. Poses a strong technical background
  3. Poses a strong auditing background
  4. Understand all regulations affecting the organization

Answer(s): A






Post your Comments and Discuss EC-Council 712-50 exam prep with other Community members:

Join the 712-50 Discussion