
Information Systems Security Management Professional
Domain 1Objective 4
1.4 Define and Maintain Security Policy Framework ISSMP Practice Questions (Page 3)
Part of the Leadership and Organizational Management domain, which accounts for 21% of the ISSMP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~15–25 in this domain), expect 2–3 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
6concepts
21%of the exam
Questions 11–15
- 11
A security manager is presenting a new security policy to the executive team. What is the most effective way to advocate for the policy and obtain their support?
Select an answer first - 12
A manufacturing company is implementing a new security policy framework to comply with industry standards. The CEO is concerned that the new policies will slow down production and is hesitant to approve them. As the security manager, what should you do to gain the CEO's support?
Select an answer first - 13
An organization is defining data classification levels. Which factor is most important for determining the classification level of a data asset?
Select an answer first - 14
What is the primary purpose of a security baseline?
Select an answer first - 15
A retail company's security policy framework has not been reviewed in three years. During this time, the company has adopted new payment processing technologies and new data protection regulations have been enacted. What should you do to ensure the framework remains effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSMP” is a trademark of its owner, used for identification only.