
EC-CouncilAssociate C|CISO
Domain 1Objective 1
Information Security Management Program ACCISO Practice Questions (Page 11)
Part of the Governance, Risk, and Compliance domain, which makes up ~15% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 2–3 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
7concepts
Questions 51–52
- 51
A technology startup is growing rapidly and needs to establish an Information Security Management Program. The CEO wants the program to support the company's agile development culture while still providing adequate governance. The company has no formal security policies yet. Which first step best aligns the ISMP with the organization's strategy and culture?
Select an answer first - 52
A technology company's ISMP includes a security awareness program. The program has been running for a year, but the number of phishing incidents has not decreased. The CISO suspects the training is not effective. Which approach would best diagnose and improve the program?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to ACCISO
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.