Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Information Security Manager

Domain 2Objective 6

Risk Monitoring and Reporting CISM Practice Questions (Page 4)

Part of the Domain 2: Information Security Risk Management domain, which accounts for 20% of the CISM exam.

37questions here
8free pages
9concepts
20%of the exam

Questions 16–20

  1. 16application · medium

    A risk assessment identifies a new risk that is rated as 'extreme' and exceeds the organization's risk appetite. The risk owner has been assigned. What is the most important immediate action for the risk manager?

    Select an answer first
  2. 17foundation · easy

    What is the purpose of compliance monitoring in the context of risk management?

    Select an answer first
  3. 18foundation · easy

    What is the purpose of a risk escalation process?

    Select an answer first
  4. 19foundation · easy

    What is a common dashboard technique for presenting risk status?

    Select an answer first
  5. 20expert · hard

    A global bank has a risk appetite that allows a maximum of 5% of high-value transactions to be flagged for manual review. The current KRI shows this has risen to 7% over the past week. The risk owner is on vacation. The CISO must decide the next step. Which action is most appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CISM” is a trademark of its owner, used for identification only.