Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Information Security Manager

Domain 1Objective 2

Legal, Regulatory and Contractual Requirements CISM Practice Questions (Page 3)

Part of the Domain 1: Information Security Governance domain, which accounts for 17% of the CISM exam.

22questions here
5free pages
5concepts
17%of the exam

Questions 11–15

  1. 11foundation · easy

    Which of the following activities is a key component of an effective compliance management process?

    Select an answer first
  2. 12foundation · easy

    Which of the following BEST describes the role of regulatory requirements in information security governance?

    Select an answer first
  3. 13application · medium

    A healthcare organization is planning to share patient data with a research institution for a clinical study. The information security manager must assess the impact of this data sharing on the organization's compliance posture. Which factor is most important to consider in this impact assessment?

    Select an answer first
  4. 14application · medium

    A financial services firm is outsourcing its customer support to a third-party call center. The contract includes a requirement for the call center to report any security incident within 24 hours. The information security manager is designing the compliance monitoring process. What is the most effective way to verify the call center is meeting this contractual obligation?

    Select an answer first
  5. 15expert · hard

    A company has a contract with a vendor that requires the vendor to comply with the company's information security policies. The information security manager discovers that the vendor is not complying with the policy on data retention. What is the most appropriate action?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.