Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Chief Information Security Officer

Domain 5Objective 6

Vendor Management and Procurement Processes CCISO Practice Questions (Page 1)

Part of the Strategic Planning, Finance, Procurement, and Vendor Management domain, which makes up ~21% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~13–21 in this domain), expect 2–4 from this objective — we provide 54 practice questions to prepare you well beyond it. (estimate)

54questions here
11free pages
8concepts

Questions 1–5

  1. 1expert · hard

    A government agency is managing an RFP for a new cybersecurity monitoring platform. The agency has a strict deadline to award the contract before the end of the fiscal year. The RFP evaluation team is large and has conflicting opinions. The CISO must ensure the RFP process is completed on time while maintaining quality. What is the best approach?

    Select an answer first
  2. 2foundation · easy

    Which action is most critical to include in a vendor exit plan to ensure the organization retains access to its data after termination?

    Select an answer first
  3. 3expert · hard

    A company has a contract with a SaaS vendor that includes an SLA with a 99.9% uptime guarantee. Over the past six months, the vendor has consistently achieved 99.95% uptime, but the company's internal monitoring shows that the vendor's response time to critical incidents has been slower than the SLA target. The vendor disputes the response-time data, claiming the company's monitoring method is inaccurate. The CISO must decide how to handle this dispute. What is the most appropriate action?

    Select an answer first
  4. 4expert · hard

    A company is selecting a vendor for a new cybersecurity monitoring platform. The company has a limited budget and needs a solution that can be deployed quickly. Two vendors are shortlisted: Vendor A offers a comprehensive platform with advanced features but requires a longer implementation and higher cost. Vendor B offers a simpler platform with fewer features but can be deployed quickly and at lower cost. The CISO must balance the need for comprehensive security with budget and time constraints. Which approach is most appropriate?

    Select an answer first
  5. 5application · medium

    A retail company is negotiating a contract with a new payment processing vendor. The CISO wants to ensure that the vendor is held accountable for security incidents. Which contract clause should the CISO insist on including?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.