Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

CISM SET 8 Exam Questions & Answers (Grade A+).docx

Rating
-
Sold
-
Pages
44
Grade
A+
Uploaded on
22-05-2026
Written in
2025/2026

CISM SET 8 Exam Questions & Answers (Grade A+).docx

Institution
CISM - Certified Information Security Manager
Course
CISM - Certified Information Security Manager

Content preview

CISM SET 8 Exam Questions &
Answers (Grade A+)
701. An organization recently outsourced the development of a
mission-critical business application. Which of the following would
be the BEST way to test for the existence of backdoors?
A. Perform security code reviews on the entire application
B. Scan the entire application using a vulnerability scanning tool
C. Monitor Internet traffic for sensitive information leakage
D. Run the application from a high-privileged account on a test
system - correct answer ✅A. Perform security code reviews on the
entire application


702. When remote access to confidential information is granted to
a vendor for analytic purposes, which of the following is the MOST
important security consideration?
A. The vendor must be able to amend data
B. The vendor must agree to the organization's information security
policy
C. Data is encrypted in transit and at rest at the vendor site
D. Data is subject to regular access log review - correct answer ✅B.
The vendor must agree to the organization's information security
policy

,CISM SET 8 Exam Questions &
Answers (Grade A+)
703. When investigating an information security incident details of
the incident should be shared:
A. widely to demonstrate positive intent
B. only as needed
C. only with management
D. only with internal audit - correct answer ✅B. only as needed


704. The PRIMARY advantage of involving end users in continuity
planning is that they:
A. can see the overall impact to the business
B. are more objective than information security management
C. can balance the technical and business risks
D. have a better understanding of specific business needs - correct
answer ✅D. have a better understanding of specific business
needs


705. In a business proposal, a potential vendor promotes being
certified for international security standards as a measure of its
security capability.
Before relying on this certification, it is MOST important that the
information security manager confirms that the:

,CISM SET 8 Exam Questions &
Answers (Grade A+)
A. certification scope is relevant to the service being offered
B. certification will remain current through the life of the contract
C. current international standard was used to assess security
processes
D. certification can be extended to cover the client's business -
correct answer ✅A. certification scope is relevant to the service
being offered


706. Which of the following service offerings in a typical
Infrastructure as a Service (IaaS) model will BEST enable a cloud
service provider to assist customers when recovering from a
security incident?
A. Capability to take a snapshot of virtual machines
B. Capability of online virtual machine analysis
C. Availability of web application firewall logs
D. Availability of current infrastructure documentation - correct
answer ✅A. Capability to take a snapshot of virtual machines


707. Which of the following roles is BEST able to influence the
security culture within an organization?
A. Chief information security officer (CISO)

, CISM SET 8 Exam Questions &
Answers (Grade A+)
B. Chief information officer (CIO)
C. Chief operating officer (COO)
D. Chief executive officer (CEO) - correct answer ✅D. Chief
executive officer (CEO)


708. Which of the following BEST indicates the effectiveness of a
recent information security awareness campaign delivered across
the organization?
A. Increase in the frequency of security incident escalations
B. Reduction in the impact of security incidents
C. Decrease in the number of security incidents
D. Increase in the number of reported security incidents - correct
answer ✅D. Increase in the number of reported security incidents


709. Which of the following is the BEST evidence of alignment
between corporate and information security governance?
A. Security key performance indicators (KPIs)
B. Senior management sponsorship
C. Regular security policy reviews
D. Project resource optimization - correct answer ✅B. Senior
management sponsorship

Written for

Institution
CISM - Certified Information Security Manager
Course
CISM - Certified Information Security Manager

Document information

Uploaded on
May 22, 2026
Number of pages
44
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$15.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Chloelunar University Of Nevada-Las Vegas
Follow You need to be logged in order to follow users or courses
Sold
96
Member since
2 year
Number of followers
6
Documents
14296
Last sold
3 days ago

Get study materials, exam answer packs, step-by-step assignment solutions, and much more. Learn more effectively and quickly. After acquiring any document, please always provide a review to ensure that our consumers are completely satisfied.Best Wishes!!!!!!

3.5

17 reviews

5
7
4
4
3
1
2
0
1
5

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions