
EC-CouncilAssociate C|CISO
Domain 2Objective 3
Implementing Control Assurance Frameworks ACCISO Practice Questions (Page 3)
Part of the Information Security Controls and Audit Management domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 2–3 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)
41questions here
9free pages
7concepts
Questions 11–15
- 11
How does continuous improvement apply to a control assurance framework?
Select an answer first - 12
Which activity is typically performed during the testing phase of a control assurance process?
Select an answer first - 13
What is the first step in implementing a control assurance framework?
Select an answer first - 14
A control assurance assessment found a critical vulnerability in a customer-facing application. The vulnerability has been exploited in the wild, but the remediation requires a significant code change that will take three months. The CISO must report this finding to the board. What is the most appropriate reporting strategy?
Select an answer first - 15
What is the primary purpose of evidence collection during a control assurance activity?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.