
Certified Information Security Manager
Domain 1Objective 1
Organizational Culture CISM Practice Questions (Page 1)
Part of the Domain 1: Information Security Governance domain, which accounts for 17% of the CISM exam.
27questions here
6free pages
4concepts
17%of the exam
Questions 1–5
- 1
An organization has a culture that prioritizes speed and innovation over following established procedures. How is this culture most likely to affect the effectiveness of information security governance?
Select an answer first - 2
Why is organizational culture considered a critical element of information security governance?
Select an answer first - 3
Which strategy is most effective for promoting a security-aware culture within an organization?
Select an answer first - 4
A security manager wants to promote a security-aware culture in an organization where employees view security as an IT-only issue. Which initiative is most likely to change this perception?
Select an answer first - 5
A security manager is evaluating the effectiveness of a security awareness program. The program has been running for a year, but phishing simulation click rates remain high. The manager suspects the culture does not support security awareness. What is the most reliable way to assess the cultural impact?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.