
Certified Information Security Manager
Domain 4Objective 1
Preparation CISM Practice Questions (Page 4)
Part of the Domain 4: Incident Management domain, which accounts for 30% of the CISM exam.
33questions here
7free pages
9concepts
30%of the exam
Questions 16–20
- 16
A company's incident response team includes members from different departments, but during a recent incident, the legal department was not informed until after the company had already made a public statement. The incident response manager wants to improve communication protocols. Which action would be most effective?
Select an answer first - 17
A company has experienced a ransomware attack that encrypted critical files. The incident response team has isolated the affected systems to prevent further spread. Which of the following should be the next step in the response process?
Select an answer first - 18
Which of the following is a typical activation trigger for a Business Continuity Plan?
Select an answer first - 19
Which of the following is a typical output of a Business Impact Analysis?
Select an answer first - 20
Which of the following is a key component typically found in an incident response plan?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.