
Certified Information Systems Security Professional
Domain 1Objective 1
1.1 - Understand, Adhere to, and Promote Professional Ethics CISSP Practice Questions (Page 3)
Part of the Security and Risk Management domain, which accounts for 16% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–19 in this domain), expect 1–2 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
4concepts
16%of the exam
Questions 11–15
- 11
A company is updating its organizational code of ethics. The security team wants to ensure the code effectively guides employee behavior regarding data handling. Which component is most essential to include?
Select an answer first - 12
A security analyst notices a colleague bypassing access controls to retrieve data for a personal project. What is the most appropriate ethical action for the analyst to take?
Select an answer first - 13
When faced with an ethical dilemma in daily security practice, what is the first step a professional should take?
Select an answer first - 14
An ISC2 member is asked by a manager to perform a security assessment that the member knows is not thorough enough to identify significant vulnerabilities. The manager wants to save time and money. What should the member do?
Select an answer first - 15
A security analyst discovers that a vendor's software contains a backdoor that could allow unauthorized access to the company's network. The vendor is a major partner and the company's leadership is reluctant to report the issue, fearing contractual penalties. The analyst is an ISC2 member. What is the most ethical course of action?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.