Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Information Security Manager

Domain 1Objective 1

Organizational Culture CISM Practice Questions (Page 3)

Part of the Domain 1: Information Security Governance domain, which accounts for 17% of the CISM exam.

27questions here
6free pages
4concepts
17%of the exam

Questions 11–15

  1. 11application · medium

    A security manager wants to promote a security-aware culture in a company where employees are competitive and motivated by recognition. Which initiative is most likely to be effective?

    Select an answer first
  2. 12foundation · easy

    What is the primary purpose of aligning organizational culture with information security governance objectives?

    Select an answer first
  3. 13foundation · easy

    Which scenario best illustrates a positive impact of organizational culture on information security governance?

    Select an answer first
  4. 14application · medium

    A security manager is explaining to the board why a recent security awareness campaign did not change employee behavior. Which statement best describes the role of organizational culture in this situation?

    Select an answer first
  5. 15expert · hard

    A security manager is assessing the impact of organizational culture on security governance. The company has a culture of 'heroic' behavior, where employees are praised for working long hours and solving problems quickly, even if it means bypassing security controls. What is the most likely impact of this culture on security governance?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.