Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilAssociate C|CISO

Domain 5Objective 1

Security Strategic Planning ACCISO Practice Questions (Page 3)

Part of the Strategic Planning, Finance, Procurement, and Vendor Management domain, which makes up ~23% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–18 in this domain), expect 2–3 from this objective — we provide 62 practice questions to prepare you well beyond it. (estimate)

62questions here
13free pages
10concepts

Questions 11–15

  1. 11expert · hard

    A company's security strategic plan is updated annually. This year, the CISO notices that the risk landscape has changed significantly due to new remote work policies. The current plan does not address remote work risks. What is the most appropriate action?

    Select an answer first
  2. 12expert · hard

    A technology company has a three-year security strategic plan. At the annual review, the CISO notices that the threat landscape has changed significantly, with a rise in supply-chain attacks. The current plan focuses heavily on insider threats and perimeter defense. The company's risk appetite is moderate, and the board expects the security strategy to remain relevant. What should the CISO do?

    Select an answer first
  3. 13foundation · easy

    What is the primary way a security strategy supports the organization's mission?

    Select an answer first
  4. 14application · medium

    A CISO has drafted a security strategy that includes a major shift to zero-trust architecture. The strategy will require significant changes across the organization. To ensure successful implementation, what is the most important stakeholder group to engage early?

    Select an answer first
  5. 15application · medium

    A multinational manufacturing company wants to establish a security governance framework that supports its strategic planning process. The company operates in multiple jurisdictions with varying data protection regulations and has a complex supplier ecosystem. The CISO needs a framework that provides comprehensive control objectives, aligns IT governance with business goals, and can be used to assess and improve the overall governance process. Which framework is most appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.