Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Information Security Manager

Domain 2Objective 1

Emerging Risk and Threat Landscape CISM Practice Questions (Page 5)

Part of the Domain 2: Information Security Risk Management domain, which accounts for 20% of the CISM exam.

35questions here
7free pages
8concepts
20%of the exam

Questions 21–25

  1. 21foundation · easy

    In threat landscape analysis, which of the following BEST describes the role of understanding threat actor motivations?

    Select an answer first
  2. 22application · medium

    The CISO needs to report an emerging threat to the board. The threat involves a new zero-day vulnerability in a widely used software. What is the most appropriate way to communicate this?

    Select an answer first
  3. 23foundation · easy

    Which of the following is an example of a NEW attack vector that has emerged in the evolving threat landscape?

    Select an answer first
  4. 24application · medium

    The CISO has identified a new ransomware strain that specifically targets the organization's industry. The board needs to understand the risk and decide on a response. What is the most effective way to communicate this emerging threat?

    Select an answer first
  5. 25expert · hard

    A global bank is evaluating the risk of a new AI-based fraud detection system. The system will process customer data across multiple jurisdictions. The CISO must identify the most critical emerging risk that requires immediate attention.

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.