Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Chief Information Security Officer

Domain 1Objective 2

Defining an Information Security Governance Program CCISO Practice Questions (Page 5)

Part of the Governance, Risk, and Compliance domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 53 practice questions to prepare you well beyond it. (estimate)

53questions here
11free pages
8concepts

Questions 21–25

  1. 21application · medium

    A CISO is designing the governance program for a multinational corporation. The program must ensure that security decisions are made consistently across all business units and that there is a clear escalation path for risk decisions. Which component is essential to achieve this?

    Select an answer first
  2. 22foundation · easy

    What is the primary role of ISO/IEC 27001 in an information security governance program?

    Select an answer first
  3. 23foundation · easy

    What is the primary role of the board of directors in information security governance?

    Select an answer first
  4. 24application · medium

    A government contractor must comply with FedRAMP requirements for a cloud service. The CISO wants to adopt a framework that will directly support the FedRAMP authorization process. Which framework is most appropriate?

    Select an answer first
  5. 25expert · hard

    A CISO is frustrated that the board only reviews security metrics annually and often questions the relevance of the data. The CISO wants to improve board engagement. Which change is most likely to increase the board's understanding and support?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.