wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Information Security Management Practice MCQs: IT Governance

Total questions: 150

Worksheet time: 1hrs 15mins

Name
Class
Date
1.

What is the primary objective of information security governance?

a)

To reduce IT costs

b)

To align security with business objectives

c)

To implement technical controls

d)

To monitor employee activities

2.

Which framework is commonly used for information security governance?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

3.

What is the role of the board of directors in information security governance?

a)

To configure security tools

b)

To oversee security strategy

c)

To conduct risk assessments

d)

To train employees

4.

Which of the following is a key component of an information security governance framework?

a)

Network firewalls

b)

Security policies

c)

Software development

d)

Employee scheduling

5.

What is the purpose of a security steering committee in governance?

a)

To perform daily security tasks

b)

To prioritize security initiatives

c)

To develop software

d)

To monitor network traffic

6.

Which standard provides guidelines for information security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

7.

What is a key responsibility of the chief information security officer (CISO) in governance?

a)

Configuring firewalls

b)

Developing security strategy

c)

Coding applications

d)

Managing IT budgets

8.

Which of the following best defines information security governance?

a)

Managing security operations

b)

Aligning security with business needs

c)

Implementing encryption

d)

Monitoring network security

9.

What is the purpose of a security policy in governance?

a)

To configure security tools

b)

To define security requirements

c)

To test system performance

d)

To train employees

10.

Which model assesses the maturity of security governance processes?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

11.

What is a key outcome of effective information security governance?

a)

Reduced IT staff

b)

Alignment of security with business goals

c)

Increased software licenses

d)

Faster network speeds

12.

Which of the following is a primary function of information security governance?

a)

Implementing firewalls

b)

Ensuring resource optimization

c)

Developing applications

d)

Monitoring employee emails

13.

What is the role of a security strategy in governance?

a)

To manage daily operations

b)

To guide long-term security efforts

c)

To secure network traffic

d)

To train employees

14.

Which framework focuses on service management in security governance?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

15.

What should a CISM evaluate to assess security governance effectiveness?

a)

Network performance

b)

Security strategy alignment

c)

Software licensing

d)

Hardware maintenance

16.

Which of the following is a key security governance metric?

a)

Number of security staff

b)

Alignment with business objectives

c)

Network bandwidth usage

d)

Software version updates

17.

What is the purpose of a balanced scorecard in security governance?

a)

To track security budgets

b)

To evaluate security performance

c)

To secure IT systems

d)

To automate processes

18.

Which law is relevant to security governance in publicly traded companies?

a)

GDPR

b)

Sarbanes-Oxley Act

c)

HIPAA

d)

DMCA

19.

What is a key component of a security governance framework?

a)

Network encryption

b)

Risk management processes

c)

Software development

d)

User training

20.

Which standard is used to evaluate information security management?

a)

ISO 27001

b)

ITIL

c)

COBIT

d)

CMMI

21.

What is the role of the CISO in security governance?

a)

Managing IT projects

b)

Overseeing security strategy

c)

Developing software

d)

Monitoring IT budgets

22.

Which of the following indicates effective security governance?

a)

High security spending

b)

Alignment with business strategy

c)

Frequent software updates

d)

Reduced security staff

23.

What is a primary goal of security resource management in governance?

a)

Reducing security costs

b)

Optimizing resource use

c)

Increasing software licenses

d)

Automating backups

24.

Which committee oversees security project prioritization in governance?

a)

Audit committee

b)

Security steering committee

c)

Finance committee

d)

IT operations committee

25.

What is the purpose of a risk assessment in security governance?

a)

To reduce security costs

b)

To identify and prioritize risks

c)

To secure IT systems

d)

To automate processes

26.

Which framework supports security governance by focusing on risk management?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

27.

What is a key responsibility of the security governance board?

a)

Configuring security systems

b)

Approving security policies

28.

Which of the following is a critical security governance process?

a)

Software testing

b)

Risk management

c)

Network monitoring

d)

User support

29.

What is the purpose of security governance audits?

a)

To reduce security costs

b)

To ensure compliance and alignment

c)

To secure IT systems

d)

To automate processes

30.

Which role is responsible for implementing security governance policies?

a)

Security auditor

b)

CISO

c)

Network administrator

d)

Developer

31.

What should a CISM review to assess security strategy alignment?

a)

Network logs

b)

Organizational objectives

c)

Software licenses

d)

Security budgets

32.

Which of the following is a key security governance outcome?

a)

Reduced security staff

b)

Business-security alignment

c)

Increased software licenses

d)

Faster network speeds

33.

What is the purpose of a security charter in governance?

a)

To configure security tools

b)

To define security roles and responsibilities

c)

To test system performance

d)

To train employees

34.

Which framework is used to assess security service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

PRINCE2

35.

What is a key component of a security governance policy?

a)

Network configuration

b)

Risk management framework

c)

Software development

d)

Employee scheduling

36.

Which standard evaluates corporate security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

37.

What is the role of the security strategy committee in governance?

a)

To manage security operations

b)

To develop long-term security plans

c)

To secure IT systems

d)

To monitor security budgets

38.

Which of the following is a key security governance control?

a)

Network encryption

b)

Segregation of duties

c)

Software upgrades

d)

User training

39.

What is the purpose of a security governance framework like COBIT?

a)

To secure networks

b)

To align security with business goals

c)

To automate security processes

d)

To reduce security staff

40.

Which of the following is a primary security governance metric?

a)

Number of security incidents

b)

Alignment with business objectives

c)

Network uptime

d)

Software licenses

41.

What is the role of the board in security governance?

a)

Configuring security systems

b)

Approving security strategies

c)

Performing audits

d)

Managing backups

42.

Which framework supports security governance by focusing on service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

43.

What is a key deliverable of a security governance program?

a)

Network configuration

b)

Security policy framework

c)

Software upgrades

d)

User training

44.

Which law mandates security controls for personal data in the EU?

a)

GDPR

b)

HIPAA

c)

Sarbanes-Oxley Act

d)

DMCA

45.

What is the purpose of a security risk management process in governance?

a)

To reduce security costs

b)

To identify and mitigate risks

c)

To secure IT systems

d)

To automate processes

46.

Which of the following is a key security governance principle?

a)

Cost reduction

b)

Stakeholder value delivery

c)

Software optimization

d)

Network security

47.

What is the role of the CISO in security strategy development?

a)

Managing IT projects

b)

Defining security objectives

c)

Developing software

d)

Monitoring IT budgets

48.

Which standard provides a framework for information security management?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

49.

What is a key responsibility of the security steering committee?

a)

Configuring security systems

b)

Prioritizing security initiatives

c)

Performing audits

d)

Managing backups

50.

Which of the following is a critical security governance process?

a)

Software testing

b)

Risk assessment

c)

Network monitoring

d)

User support

51.

What is the purpose of a security governance audit?

a)

To reduce security costs

b)

To ensure compliance and alignment

c)

To secure IT systems

d)

To automate processes

52.

Which role implements security governance policies?

a)

Security auditor

b)

CISO

c)

Network administrator

d)

Developer

53.

What is a key outcome of effective security governance?

a)

Reduced security staff

b)

Business-security alignment

c)

Increased software licenses

d)

Faster network speeds

54.

Which framework is used for security governance and management?

a)

ITIL

b)

COBIT

c)

CMMI

55.

What is the purpose of a security steering committee?

a)

To manage daily security operations

b)

To prioritize security initiatives

c)

To secure IT systems

d)

To train security staff

56.

Which standard evaluates corporate security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

57.

What is a key component of security governance risk management?

a)

Software upgrades

b)

Risk assessment

c)

Network monitoring

d)

User training

58.

Which of the following is a key security governance metric?

a)

Number of security projects

b)

Alignment with business objectives

c)

Network uptime

d)

Software licenses

59.

What is the role of the security strategy committee?

a)

To manage security operations

b)

To develop long-term security plans

c)

To secure IT systems

d)

To monitor security budgets

60.

Which framework assesses security service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

PRINCE2

61.

What is the purpose of a security policy framework?

a)

To reduce security costs

b)

To define security requirements

c)

To secure IT systems

d)

To automate processes

62.

Which law mandates security controls for health data in the U.S.?

a)

GDPR

b)

HIPAA

c)

Sarbanes-Oxley Act

d)

DMCA

63.

What is a key component of a security governance framework?

a)

Network security

b)

Risk management processes

c)

Software development

d)

User training

64.

Which framework supports security governance with service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

65.

What is the purpose of a security balanced scorecard?

a)

To track security budgets

b)

To evaluate security performance

c)

To secure IT systems

d)

To automate processes

66.

Which of the following is a key security governance outcome?

a)

Reduced security costs

b)

Alignment with business strategy

c)

Increased software licenses

d)

Faster network speeds

67.

What is the role of the CISO in security governance?

a)

Managing IT projects

b)

Overseeing security strategy

c)

Developing software

d)

Monitoring IT budgets

68.

Which standard provides security governance guidelines?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

69.

What is a key responsibility of the security governance board?

a)

Configuring security systems

b)

Approving security policies

c)

Performing audits

d)

Managing backups

70.

Which process is critical in security governance?

a)

Software testing

b)

Risk assessment

c)

Network monitoring

d)

User support

71.

What is the purpose of security governance audits?

a)

To reduce security costs

b)

To ensure compliance and alignment

c)

To secure IT systems

d)

To automate processes

72.

Which role implements security governance policies?

a)

Security auditor

b)

CISO

c)

Network administrator

d)

Developer

73.

What is a key outcome of effective security governance?

a)

Reduced security staff

b)

Business-security alignment

c)

Increased software licenses

d)

Faster network speeds

74.

Which framework is used for security governance?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

75.

What is the purpose of a security steering committee?

a)

To manage daily security operations

b)

To prioritize security initiatives

c)

To secure IT systems

d)

To train security staff

76.

Which standard evaluates corporate security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

77.

What is a key component of security governance risk management?

a)

Software upgrades

b)

Risk assessment

c)

Network monitoring

d)

User training

78.

Which of the following is a key security governance metric?

a)

Number of security projects

b)

Alignment with business objectives

c)

Network uptime

d)

Software licenses

79.

What is the role of the security strategy committee?

a)

To manage security operations

b)

To develop long-term security plans

c)

To secure IT systems

d)

To monitor security budgets

80.

Which framework assesses security service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

PRINCE2

81.

What is the purpose of a security policy framework?

a)

To reduce security costs

b)

To define security requirements

c)

To secure IT systems

d)

To automate processes

82.

Which law mandates security controls for personal data in California?

a)

GDPR

b)

HIPAA

c)

CCPA

d)

Sarbanes-Oxley Act

83.

What is a key component of a security governance framework?

a)

Network security

b)

Risk management processes

c)

Software development

d)

User training

84.

Which framework supports security governance with service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

85.

What is the purpose of a security balanced scorecard?

a)

To track security budgets

b)

To evaluate security performance

c)

To secure IT systems

d)

To automate processes

86.

Which of the following is a key security governance outcome?

a)

Reduced security costs

b)

Alignment with business strategy

c)

Increased software licenses

d)

Faster network speeds

87.

What is the role of the CISO in security governance?

a)

Managing IT projects

b)

Overseeing security strategy

c)

Developing software

d)

Monitoring IT budgets

88.

Which standard provides security governance guidelines?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

89.

What is a key responsibility of the security governance board?

a)

Configuring security systems

b)

Approving security policies

c)

Performing audits

d)

Managing backups

90.

Which process is critical in security governance?

a)

Software testing

b)

Risk assessment

c)

Network monitoring

d)

User support

91.

What is the purpose of security governance audits?

a)

To reduce security costs

b)

To ensure compliance and alignment

c)

To secure IT systems

d)

To automate processes

92.

Which role implements security governance policies?

a)

Security auditor

b)

CISO

c)

Network administrator

d)

Developer

93.

What is a key outcome of effective security governance?

a)

Reduced security staff

b)

Business-security alignment

c)

Increased software licenses

d)

Faster network speeds

94.

Which framework is used for security governance?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

95.

What is the purpose of a security steering committee?

a)

To manage daily security operations

b)

To prioritize security initiatives

c)

To secure IT systems

d)

To train security staff

96.

Which standard evaluates corporate security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

97.

What is a key component of security governance risk management?

a)

Software upgrades

b)

Risk assessment

c)

Network monitoring

d)

User training

98.

Which of the following is a key security governance metric?

a)

Number of security projects

b)

Alignment with business objectives

c)

Network uptime

d)

Software licenses

99.

What is the role of the security strategy committee?

a)

To manage security operations

b)

To develop long-term security plans

c)

To secure IT systems

d)

To monitor security budgets

100.

Which framework assesses security service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

PRINCE2

101.

What is the purpose of a security policy framework?

a)

To reduce security costs

b)

To define security requirements

c)

To secure IT systems

d)

To automate processes

102.

Which law mandates security controls for financial data in the U.S.?

a)

GDPR

b)

HIPAA

c)

Sarbanes-Oxley Act

d)

DMCA

103.

What is a key component of a security governance framework?

a)

Network security

b)

Risk management processes

c)

Software development

d)

User training

104.

Which framework supports security governance with service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

105.

What is the purpose of a security balanced scorecard?

a)

To track security budgets

b)

To evaluate security performance

c)

To secure IT systems

d)

To automate processes

106.

Which of the following is a key security governance outcome?

a)

Reduced security costs

b)

Alignment with business strategy

c)

Increased software licenses

d)

Faster network speeds

107.

What is the role of the CISO in security governance?

a)

Managing IT projects

b)

Overseeing security strategy

c)

Developing software

d)

Monitoring IT budgets

108.

Which standard provides security governance guidelines?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

109.

What is a key responsibility of the security governance board?

a)

Configuring security systems

b)

Approving security policies

c)

Performing audits

d)

Managing backups

110.

Which process is critical in security governance?

a)

Software testing

b)

Risk assessment

c)

Network monitoring

d)

User support

111.

What is the purpose of security governance audits?

a)

To reduce security costs

b)

To ensure compliance and alignment

c)

To secure IT systems

d)

To automate processes

112.

Which role implements security governance policies?

a)

Security auditor

b)

CISO

c)

Network administrator

d)

Developer

113.

What is a key outcome of effective security governance?

a)

Reduced security staff

b)

Business-security alignment

c)

Increased software licenses

d)

Faster network speeds

114.

Which framework is used for security governance?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

115.

What is the purpose of a security steering committee?

a)

To manage daily security operations

b)

To prioritize security initiatives

c)

To secure IT systems

d)

To train security staff

116.

Which standard evaluates corporate security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

117.

What is a key component of security governance risk management?

a)

Software upgrades

b)

Risk assessment

c)

Network monitoring

d)

User training

118.

Which of the following is a key security governance metric?

a)

Number of security projects

b)

Alignment with business objectives

c)

Network uptime

d)

Software licenses

119.

What is the role of the security strategy committee?

a)

To manage security operations

b)

To develop long-term security plans

c)

To secure IT systems

d)

To monitor security budgets

120.

Which framework assesses security service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

PRINCE2

121.

What is the purpose of a security policy framework?

a)

To reduce security costs

b)

To define security requirements

c)

To secure IT systems

d)

To automate processes

122.

Which law mandates security controls for personal data in the EU?

a)

GDPR

b)

HIPAA

c)

CCPA

d)

Sarbanes-Oxley Act

123.

What is a key component of a security governance framework?

a)

Network security

b)

Risk management processes

c)

Software development

d)

User training

124.

Which framework supports security governance with service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

125.

What is the purpose of a security balanced scorecard?

a)

To track security budgets

b)

To evaluate security performance

c)

To secure IT systems

d)

To automate processes

126.

Which of the following is a key security governance outcome?

a)

Reduced security costs

b)

Alignment with business strategy

c)

Increased software licenses

d)

Faster network speeds

127.

What is the role of the CISO in security governance?

a)

Managing IT projects

b)

Overseeing security strategy

c)

Developing software

d)

Monitoring IT budgets

128.

Which standard provides security governance guidelines?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

129.

What is a key responsibility of the security governance board?

a)

Configuring security systems

b)

Approving security policies

c)

Performing audits

d)

Managing backups

130.

Which process is critical in security governance?

a)

Software testing

b)

Risk assessment

c)

Network monitoring

d)

User support

131.

What is the purpose of security governance audits?

a)

To reduce security costs

b)

To ensure compliance and alignment

c)

To secure IT systems

d)

To automate processes

132.

Which role implements security governance policies?

a)

Security auditor

b)

CISO

c)

Network administrator

d)

Developer

133.

What is a key outcome of effective security governance?

a)

Reduced security staff

b)

Business-security alignment

c)

Increased software licenses

d)

Faster network speeds

134.

Which framework is used for security governance?

a)

ITIL

b)

COBIT

c)

CMMI

d)

PRINCE2

135.

What is the purpose of a security steering committee?

a)

To manage daily security operations

b)

To prioritize security initiatives

c)

To secure IT systems

d)

To train security staff

136.

Which standard evaluates corporate security governance?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

137.

What is a key component of security governance risk management?

a)

Software upgrades

b)

Risk assessment

c)

Network monitoring

d)

User training

138.

Which of the following is a key security governance metric?

a)

Number of security projects

b)

Alignment with business objectives

c)

Network uptime

d)

Software licenses

139.

What is the role of the security strategy committee?

a)

To manage security operations

b)

To develop long-term security plans

c)

To secure IT systems

d)

To monitor security budgets

140.

Which framework assesses security service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

PRINCE2

141.

What is the purpose of a security policy framework?

a)

To reduce security costs

b)

To define security requirements

c)

To secure IT systems

d)

To automate processes

142.

Which law mandates security controls for health data in the U.S.?

a)

GDPR

b)

HIPAA

c)

CCPA

d)

Sarbanes-Oxley Act

143.

What is a key component of a security governance framework?

a)

Network security

b)

Risk management processes

c)

Software development

d)

User training

144.

Which framework supports security governance with service management?

a)

COBIT

b)

ITIL

c)

CMMI

d)

ISO 27001

145.

What is the purpose of a security balanced scorecard?

a)

To track security budgets

b)

To evaluate security performance

c)

To secure IT systems

d)

To automate processes

146.

Which of the following is a key security governance outcome?

a)

Reduced security costs

b)

Alignment with business strategy

c)

Increased software licenses

d)

Faster network speeds

147.

What is the role of the CISO in security governance?

a)

Managing IT projects

b)

Overseeing security strategy

c)

Developing software

d)

Monitoring IT budgets

148.

Which standard provides security governance guidelines?

a)

ISO 27001

b)

ISO/IEC 38500

c)

ITIL

d)

CMMI

149.

What is a key responsibility of the security governance board?

a)

Configuring security systems

b)

Approving security policies

c)

Performing audits

d)

Managing backups

150.

Which process is critical in security governance?

a)

Software testing

b)

Risk assessment

c)

Network monitoring

d)

User support