Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Information Systems Security Professional

Domain 1Objective 3

1.3 - Evaluate and Apply Security Governance Principles CISSP Practice Questions (Page 2)

Part of the Security and Risk Management domain, which accounts for 16% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–19 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)

24questions here
5free pages
5concepts
16%of the exam

Questions 6–10

  1. 6expert · hard

    A global company processes credit card data in multiple regions and is also a U.S. federal contractor. The company wants to adopt a single security framework to satisfy both PCI DSS and FedRAMP requirements. What is the most practical approach?

    Select an answer first
  2. 7foundation · easy

    Which of the following best describes the concept of due diligence in security governance?

    Select an answer first
  3. 8foundation · easy

    Which of the following best describes the role of the board of directors in security governance?

    Select an answer first
  4. 9foundation · easy

    A security manager is preparing the annual security program plan. To best support the organization's business strategy, the plan should primarily be derived from which of the following?

    Select an answer first
  5. 10foundation · easy

    Which security control framework is specifically designed for the payment card industry and is required for organizations that handle credit card data?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.