CISM Exam Question 401
When the computer incident response team (CIRT) finds clear evidence that a hacker has penetrated the corporate network and modified customer information, an information security manager should FIRST notify:
CISM Exam Question 402
When contracting with an outsourcer to provide security administration, the MOST important contractual element is the:
CISM Exam Question 403
When defining a service level agreement (SLA) regarding the level of data confidentiality that is handled by a third-party service provider, the BEST indicator of compliance would be the:
CISM Exam Question 404
Which of the following would BEST ensure that security risk assessment is integrated into the life cycle of major IT projects?
CISM Exam Question 405
Which of the following represents a PRIMARY area of interest when conducting a penetration test?