Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilAssociate C|CISO

Domain 4Objective 4

Threat and Vulnerability Management ACCISO Practice Questions (Page 4)

Part of the Information Security Core Competencies domain, which makes up ~31% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~16–25 in this domain), expect 2–3 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)

47questions here
10free pages
6concepts

Questions 16–20

  1. 16expert · hard

    A security team has implemented a vulnerability management program that scans monthly. The team is overwhelmed by the number of findings and struggles to prioritize remediation. The CISO wants to improve the program's efficiency without adding staff. Which change would most effectively address the team's challenge?

    Select an answer first
  2. 17application · medium

    A financial services firm has a vulnerability management program that scans quarterly. After a recent audit, the auditor recommends more frequent tracking of remediation progress. The security manager wants to implement a continuous monitoring approach without overburdening the team. Which change best addresses the auditor's recommendation?

    Select an answer first
  3. 18expert · hard

    A security analyst is investigating a series of unusual network connections from a server that runs a critical application. The connections are occurring at odd hours and are encrypted. The analyst suspects a sophisticated attacker may have compromised the server. Which action should the analyst take first?

    Select an answer first
  4. 19foundation · easy

    Which threat category relies on manipulating human psychology to trick individuals into divulging confidential information or performing actions that compromise security?

    Select an answer first
  5. 20expert · hard

    A security team is integrating a new threat intelligence feed into its vulnerability management process. The feed provides indicators of compromise (IOCs) for various threats. The team wants to prioritize which IOCs to act on first. Which factor should be most important in this prioritization?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.