
Certified Information Security Manager
Domain 3Objective 2
Program Implementation and Operations CISM Practice Questions (Page 7)
Part of the Domain 3: Information Security Program domain, which accounts for 33% of the CISM exam.
32questions here
7free pages
8concepts
33%of the exam
Questions 31–32
- 31
A small business has a limited budget and needs to protect customer data. The risk assessment shows that the most likely threat is phishing attacks leading to credential compromise. Which control would be the most cost-effective choice?
Select an answer first - 32
Which of the following must be considered when designing security controls?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CISM
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.