Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Chief Information Security Officer

Domain 4Objective 4

Threat and Vulnerability Management CCISO Practice Questions (Page 5)

Part of the Information Security Core Competencies domain, which makes up ~33% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~20–33 in this domain), expect 3–4 from this objective — we provide 55 practice questions to prepare you well beyond it. (estimate)

55questions here
11free pages
10concepts

Questions 21–25

  1. 21expert · hard

    A company's threat intelligence team receives a report that a zero-day vulnerability is being exploited in the wild in a software product the company uses. The vendor has not released a patch, and the company cannot immediately upgrade to a different product. The CISO must decide how to respond. The company has a low tolerance for downtime. Which response is most appropriate?

    Select an answer first
  2. 22foundation · easy

    What is the primary purpose of threat intelligence in vulnerability management?

    Select an answer first
  3. 23foundation · easy

    Which of the following is a common source of threat intelligence?

    Select an answer first
  4. 24expert · hard

    A multinational corporation's security operations center receives a threat intelligence feed that indicates a new zero-day vulnerability is being exploited in the wild in a widely used enterprise application. The vendor has not yet released a patch. The corporation has both a development environment and a production environment running the application. The CISO must decide how to respond. Which approach best balances risk and business continuity?

    Select an answer first
  5. 25application · medium

    A security operations team receives a threat intelligence report indicating that a specific malware family is being distributed through malicious macros in Word documents. The report includes indicators of compromise (IOCs) such as file hashes and command-and-control (C2) domains. The team wants to use this intelligence to improve its defenses. Which action is most appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.