CISM Exam Question 51

When performing a business impact analysis (BIA), who should be responsible for determining the initial recovery time objective (RTO)?
  • CISM Exam Question 52

    An organization is going through a digital transformation process, which places the IT organization in an unfamiliar risk landscape. The information security manager has been tasked with leading the IT risk management process. Which of the following should be given the HIGHEST priority?
  • CISM Exam Question 53

    Which of the following would be the BEST way for an information security manager to improve the effectiveness of an organization's information security program?
  • CISM Exam Question 54

    When choosing the best controls to mitigate risk to acceptable levels, the information security manager's decision should be MAINLY driven by:
  • CISM Exam Question 55

    Which of the following should be the PRIMARY basis for determining the value of assets?