Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilAssociate C|CISO

Domain 3Objective 1

The Role of the CISO ACCISO Practice Questions (Page 5)

Part of the Security Program Management and Operations domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–4 from this objective — we provide 59 practice questions to prepare you well beyond it. (estimate)

59questions here
12free pages
13concepts

Questions 21–25

  1. 21expert · hard

    A financial services firm is facing a new regulation that requires encryption of all customer data at rest and in transit. The CISO has conducted a risk assessment and identified that the current encryption standards are outdated and do not meet the new regulatory requirements. The cost to upgrade encryption across all systems is significant, and the budget is limited. The CISO must decide how to proceed. Which decision best reflects the CISO's role in risk management and compliance?

    Select an answer first
  2. 22application · medium

    A multinational corporation is establishing a security governance framework to align with ISO 27001 and various regional data protection laws. The CISO is leading this effort. What is the CISO's primary role in establishing the governance framework?

    Select an answer first
  3. 23application · medium

    A company has just experienced a ransomware incident that encrypted critical files. The incident response team is working to restore systems from backups. The CEO wants to know when operations will return to normal and what the financial impact will be. What is the CISO's primary role during this incident?

    Select an answer first
  4. 24expert · hard

    A CISO is evaluating the adoption of artificial intelligence (AI) for security monitoring. The vendor claims that the AI can reduce false positives by 80%. However, the CISO is concerned about the potential for adversarial attacks on the AI model and the lack of transparency in its decision-making. The organization has a low tolerance for security incidents. What is the most appropriate approach for the CISO?

    Select an answer first
  5. 25foundation · easy

    What is a key consideration for a CISO when communicating security initiatives to non-technical stakeholders?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.