Free CISSP-ISSMP Exam Braindumps (page: 28)

Page 27 of 55

You are working as a project manager in your organization. You are nearing the final stages of project execution and looking towards the final risk monitoring and controlling activities. For your project archives, which one of the following is an output of risk monitoring and control?

  1. Quantitative risk analysis
  2. Qualitative risk analysis
  3. Requested changes
  4. Risk audits

Answer(s): C



Della works as a security manager for SoftTech Inc. She is training some of the newly recruited personnel in the field of security management. She is giving a tutorial on DRP. She explains that the major goal of a disaster recovery plan is to provide an organized way to make decisions if a disruptive event occurs and asks for the other objectives of the DRP. If you are among some of the newly recruited personnel in SoftTech Inc, what will be your answer for her question? Each correct answer represents a part of the solution. Choose three.

  1. Protect an organization from major computer services failure.
  2. Minimize the risk to the organization from delays in providing services.
  3. Guarantee the reliability of standby systems through testing and simulation.
  4. Maximize the decision-making required by personnel during a disaster.

Answer(s): A,B,C



Fill in the blank with an appropriate phrase.______________ is used to provide security mechanisms for the storage, processing, and transfer of data.

  1. Data classification

Answer(s): A



Software Development Life Cycle (SDLC) is a logical process used by programmers to develop software. Which of the following SDLC phases meets the audit objectives defined below: System and data are validated. System meets all user requirements. System meets all control requirements.

  1. Programming and training
  2. Evaluation and acceptance
  3. Definition
  4. Initiation

Answer(s): B






Post your Comments and Discuss ISC CISSP-ISSMP exam with other Community members:

CISSP-ISSMP Discussions & Posts