
Certified Information Systems Security Professional
Domain 1Objective 3
1.3 - Evaluate and Apply Security Governance Principles CISSP Practice Questions (Page 5)
Part of the Security and Risk Management domain, which accounts for 16% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–19 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
5concepts
16%of the exam
Questions 21–24
- 21
Which of the following frameworks is primarily focused on IT governance and aligning IT processes with business objectives?
Select an answer first - 22
Which of the following is a primary purpose of a governance committee in an organization's security governance structure?
Select an answer first - 23
A company is establishing a security governance committee to oversee its security program. Which of the following is the primary responsibility of this committee?
Select an answer first - 24
A company is considering adopting a new cloud-based CRM system. The security team has identified potential risks and presented them to management. Management decides to proceed, accepting the risks. Which action demonstrates due diligence?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CISSP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.