
Certified Information Security Manager
Domain 4Objective 1
Preparation CISM Practice Questions (Page 7)
Part of the Domain 4: Incident Management domain, which accounts for 30% of the CISM exam.
33questions here
7free pages
9concepts
30%of the exam
Questions 31–33
- 31
What is the PRIMARY goal of incident management training?
Select an answer first - 32
Which of the following is the PRIMARY purpose of an incident response plan (IRP)?
Select an answer first - 33
A security operations center (SOC) receives the following alerts simultaneously: (1) a phishing email that was blocked by the gateway, (2) a workstation infected with ransomware that is encrypting files, and (3) a failed login attempt on a legacy system. The SOC has limited staff. How should the SOC prioritize these incidents?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CISM
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.