
EC-CouncilCertified Chief Information Security Officer
Domain 1Objective 1
Information Security Management Program CCISO Practice Questions (Page 6)
Part of the Governance, Risk, and Compliance domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 58 practice questions to prepare you well beyond it. (estimate)
58questions here
12free pages
10concepts
Questions 26–30
- 26
What is the primary purpose of an incident response plan?
Select an answer first - 27
An organization's security awareness program is not reducing the number of incidents caused by employees clicking on malicious links. The CISO wants to improve the program. Which action is most likely to be effective?
Select an answer first - 28
Which document type would typically specify the mandatory technical configuration for a firewall?
Select an answer first - 29
A CISO is developing the annual security plan. The company's strategic objective is to expand into new international markets. How should the CISO align the security program with this objective?
Select an answer first - 30
What is the role of an internal audit in relation to an information security program?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.