
Information Systems Security Management Professional
Domain 4Objective 3
4.3 Establish and Maintain Incident Management Program ISSMP Practice Questions (Page 4)
Part of the Security Operations domain, which accounts for 18% of the ISSMP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~13–22 in this domain), expect 4–7 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
8concepts
18%of the exam
Questions 16–20
- 16
When establishing an incident response team, which of the following is a critical staffing consideration?
Select an answer first - 17
A global company is establishing an incident response team that must operate 24/7 across different time zones. The team needs to ensure that at any time there is a designated person who can make decisions and coordinate response. Which staffing model is most appropriate?
Select an answer first - 18
What is the primary purpose of an incident response case management system?
Select an answer first - 19
A security analyst detects a series of failed login attempts followed by a successful login from an unusual location. The analyst wants to follow a structured methodology to handle this potential incident. Which approach aligns with NIST SP 800-61?
Select an answer first - 20
After a security incident, the root cause analysis team identifies that a vulnerability was present because the organization did not have a formal patch management process. The team must recommend a preventive measure. Which recommendation is most aligned with root cause analysis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSMP” is a trademark of its owner, used for identification only.