
EC-CouncilCertified Chief Information Security Officer
Domain 4Objective 4
Threat and Vulnerability Management CCISO Practice Questions (Page 11)
Part of the Information Security Core Competencies domain, which makes up ~33% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~20–33 in this domain), expect 3–4 from this objective — we provide 55 practice questions to prepare you well beyond it. (estimate)
55questions here
11free pages
10concepts
Questions 51–55
- 51
A hospital's IT team is managing patches for its electronic health record (EHR) system. The vendor releases a critical security patch, but the hospital's change advisory board (CAB) requires that all patches be tested in a staging environment for two weeks before production deployment. The threat intelligence community reports that the vulnerability is being actively exploited in healthcare. The hospital's CISO must decide how to proceed. Which option best balances security and operational stability?
Select an answer first - 52
A security team is planning to deploy a vulnerability scanner across a large enterprise network. The CISO is concerned about the scanner being detected by attackers and about the accuracy of the results. Which configuration choice best addresses both concerns?
Select an answer first - 53
A company's patch management team is struggling to keep up with the volume of patches released each month. The CISO wants to prioritize patches based on risk. The company has a mix of internet-facing web servers, internal file servers, and development workstations. Which prioritization strategy is most effective?
Select an answer first - 54
A company's risk assessment identifies a critical vulnerability in a custom-built application that is central to its operations. The vendor is no longer in business, and the source code is available. The company has a small development team that is already overburdened with feature requests. The CISO must decide how to mitigate the risk. Which option is the most practical?
Select an answer first - 55
After a security incident, the incident response team discovers that an attacker exploited a vulnerability that had been identified in a vulnerability scan six months earlier but was never remediated. The CISO wants to prevent this from recurring. Which action is most directly aligned with integrating vulnerability management and incident response?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CCISO
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.