
Certified Information Security Manager
Domain 1Objective 5
Information Governance Frameworks and Standards CISM Practice Questions (Page 1)
Part of the Domain 1: Information Security Governance domain, which accounts for 17% of the CISM exam.
21questions here
5free pages
4concepts
17%of the exam
Questions 1–5
- 1
A healthcare organization is adopting a new information governance framework. The board of directors wants to ensure that the framework aligns with the organization's overall enterprise risk management approach and that security decisions are made at the appropriate level. Which action best demonstrates integration of the information governance framework with enterprise governance?
Select an answer first - 2
A global technology company operates in multiple jurisdictions with conflicting data protection regulations. The company has adopted ISO/IEC 27001 for its ISMS but is struggling to align its security controls with the varying legal requirements. The CISO must decide how to adapt the framework to address these conflicts. Which approach is most effective?
Select an answer first - 3
Which of the following best describes the primary purpose of an information governance framework?
Select an answer first - 4
A company's board of directors wants to ensure that information security risks are considered in the organization's overall risk management decisions. The CISO is asked to integrate the information governance framework with the enterprise risk management (ERM) process. Which action would most effectively achieve this integration?
Select an answer first - 5
Why might an organization adapt a governance framework rather than adopt it as-is?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.