CISM Exam Question 416
Management would like to understand the risk associated with engaging an Infrastructure-as-a-Service (laaS) provider compared to hosting internally. Which of the following would provide the BEST method of comparing risk scenarios?
CISM Exam Question 417
Which type of plan is PRIMARILY intended to reduce the potential impact of security events that may occur?
CISM Exam Question 418
A business requires a legacy version of an application to operate but the application cannot be patched. To limit the risk exposure to the business, a firewall is implemented in front of the legacy application. Which risk treatment option has been applied?
CISM Exam Question 419
Which of the following is the BEST indication of an effective disaster recovery planning process?
CISM Exam Question 420
An information security manager notes that security incidents are not being appropriately escalated by the help desk after tickets are logged. Which of the following is the BEST automated control to resolve this issue?
