CISM Exam Question 401

When the computer incident response team (CIRT) finds clear evidence that a hacker has penetrated the corporate network and modified customer information, an information security manager should FIRST notify:
  • CISM Exam Question 402

    When contracting with an outsourcer to provide security administration, the MOST important contractual element is the:
  • CISM Exam Question 403

    When defining a service level agreement (SLA) regarding the level of data confidentiality that is handled by a third-party service provider, the BEST indicator of compliance would be the:
  • CISM Exam Question 404

    Which of the following would BEST ensure that security risk assessment is integrated into the life cycle of major IT projects?
  • CISM Exam Question 405

    Which of the following represents a PRIMARY area of interest when conducting a penetration test?