CISM Chapter 1

Quiz
•
Professional Development
•
Professional Development
•
Hard

Anna Löfgren
Used 9+ times
FREE Resource
10 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
The entity that is ultimately responsible for security governance is:
Chief information officer
Chief information security officer
Board of directors
Chief risk officer
Answer explanation
Correct answer:
"Board of directors"
The organization’s board of directors is ultimately responsible for security
governance.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
An acceptable use policy is likely to contain all of the following except:
Rules regarding the use of personally owned assets
Permitted uses of corporate assets
Data retention requirements
Protection of sensitive information
Answer explanation
Correct answer:
"Data retention requirements"
An acceptable use policy (AUP) is likely to contain statements about the use
of corporate assets, personally owned assets, and information protection. Data
retention requirements are not likely to be included.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
The best definition of governance is:
Corporate policies and procedures
Management control of business functions
Regular reporting of metrics and key performance indicators (KPIs)
Formal roles and responsibilities documented in a RACI chart
Answer explanation
Correct answer:
"Management control of business functions"
Governance is best defined as management’s control over business functions
throughout an organization.
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Under what circumstances would an organization elect to disregard a regulation and pay fines instead of complying?
The cost of the fines is less than the cost of compliance.
The cost of compliance is less than the cost of fines.
Management elected to transfer the risk.
Management elected to avoid the risk.
Answer explanation
Correct answer:
"The cost of the fines is less than the cost of compliance."
While choosing to pay fines in lieu of compliance is uncommon, it is the best answer among the choices listed.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
A database administrator (DBA) is typically responsible for all of the following except which one?
Database performance tuning
Database troubleshooting
Database capacity management
Database design
Answer explanation
Correct answer:
"Database design"
The role of database design is generally shared between the DBA and software developers/architects or is owned entirely by software developers or architects.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is the most appropriate person or group to determine applicability of a cybersecurity-related regulation?
Chief information security officer (CISO)
Chief legal counsel
Chief information risk officer (CIRO)
Security governance committee
Answer explanation
Correct answer:
"Chief legal counsel"
Only legal counsel should be determining applicability of potentially relevant laws and regulations.
None of the other is an appropriate party to interpret regulations.
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
A business executive has delegated responsibility for granting access requests to the IT department. The IT department in this role is functioning as the:
Accountable
Owner
Custodian
User
Answer explanation
Correct answer is:
"Custodian"
IT is acting as a custodian in the access request process for the business application.
The business executive remains accountable for the operation. The business executive continues in the role of the system owner. IT is not the user.
Create a free account and access millions of resources
Similar Resources on Wayground
11 questions
Information Classification and Handling Quiz

Quiz
•
Professional Development
14 questions
CRISC Domain 1 MCQ

Quiz
•
Professional Development
10 questions
Game ka na Ba?

Quiz
•
Professional Development
10 questions
Introduction to IT - 03. Security & Software Development

Quiz
•
Professional Development
12 questions
Practical Guide to CMMI for Development V2.0 - Assessment

Quiz
•
Professional Development
10 questions
GTP Challenge - Analyst Coverage

Quiz
•
Professional Development
10 questions
CompTIA Security+ SY0-701

Quiz
•
Professional Development
10 questions
Cyber Security Fundamental - RK

Quiz
•
Professional Development
Popular Resources on Wayground
55 questions
CHS Student Handbook 25-26

Quiz
•
9th Grade
10 questions
Afterschool Activities & Sports

Quiz
•
6th - 8th Grade
15 questions
PRIDE

Quiz
•
6th - 8th Grade
15 questions
Cool Tool:Chromebook

Quiz
•
6th - 8th Grade
10 questions
Lab Safety Procedures and Guidelines

Interactive video
•
6th - 10th Grade
10 questions
Nouns, nouns, nouns

Quiz
•
3rd Grade
20 questions
Bullying

Quiz
•
7th Grade
18 questions
7SS - 30a - Budgeting

Quiz
•
6th - 8th Grade
Discover more resources for Professional Development
11 questions
All about me

Quiz
•
Professional Development
10 questions
How to Email your Teacher

Quiz
•
Professional Development
5 questions
Setting goals for the year

Quiz
•
Professional Development
8 questions
Ötzi the Iceman: A 5,000-Year-Old True Crime Murder Mystery | Full Documentary | NOVA | PBS

Interactive video
•
Professional Development