
EC-CouncilCertified Chief Information Security Officer
Domain 3Objective 3
Integrating Security Requirements into Operational Processes CCISO Practice Questions (Page 7)
Part of the Security Program Management and Operations domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~10–17 in this domain), expect 3–4 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
7concepts
Questions 31–35
- 31
A hospital is integrating a security requirement that all access to the medication dispensing system must be authenticated with a smart card. The current process uses a shared username and password for all nurses on a shift. The nursing staff is concerned that smart cards will be forgotten or lost, causing delays in patient care. What is the best control to implement?
Select an answer first - 32
A software development company is integrating a security requirement that all code must be scanned for vulnerabilities before deployment. The developers are used to deploying code immediately after writing it. The CISO must implement this change with minimal resistance. Which change management tactic is most effective?
Select an answer first - 33
A bank is integrating a new regulatory requirement that all customer data must be encrypted in transit. The network team says that encrypting all internal traffic will degrade performance. The CISO must elicit the requirement into an operational specification. What is the most appropriate action?
Select an answer first - 34
Which activity is an example of compliance verification for integrated security requirements?
Select an answer first - 35
Which activity is a key part of operational process mapping for security integration?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.