
EC-CouncilCertified Chief Information Security Officer
Domain 5Objective 5
Return on Investment (ROI) and Cost-Benefit Analysis CCISO Practice Questions (Page 5)
Part of the Strategic Planning, Finance, Procurement, and Vendor Management domain, which makes up ~21% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~13–21 in this domain), expect 2–4 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
10concepts
Questions 21–25
- 21
Why is ROI analysis important when evaluating security investments?
Select an answer first - 22
If a security investment yields an ROI of 80%, what does this indicate?
Select an answer first - 23
Why is it important to include risk reduction as a benefit when presenting a security project's CBA to executives?
Select an answer first - 24
A small business is considering a $50,000 investment in a new firewall. The firewall is expected to reduce the risk of a breach by 10%. The average cost of a breach for this business is $500,000. What is the payback period?
Select an answer first - 25
A CISO is building a business case for a data loss prevention (DLP) solution. The CISO has quantified the following benefits: $150,000 per year in avoided regulatory fines, $75,000 per year in reduced breach investigation costs, and improved customer trust. How should the CISO treat the 'improved customer trust' benefit in the cost-benefit analysis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.