
Information Systems Security Management Professional
Domain 4Objective 2
4.2 Establish and Maintain Threat Intelligence Program ISSMP Practice Questions (Page 3)
Part of the Security Operations domain, which accounts for 18% of the ISSMP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~13–22 in this domain), expect 4–7 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)
47questions here
10free pages
15concepts
18%of the exam
Questions 11–15
- 11
Which step in the threat modeling process involves determining the likelihood and impact of identified threats?
Select an answer first - 12
A security analyst is investigating an incident where an attacker gained access to a system, escalated privileges, and then moved laterally to other servers. The analyst wants to map the attacker's techniques to a standardized framework to identify gaps in detection coverage. Which framework is most appropriate for this analysis?
Select an answer first - 13
A security architect is leading a threat modeling exercise for a new remote access solution. The team has identified the VPN gateway, authentication server, and employee laptops as key assets. They have also enumerated potential threats, including credential theft and man-in-the-middle attacks. What is the next step in the threat modeling process?
Select an answer first - 14
What is the purpose of analyzing a detected anomaly?
Select an answer first - 15
Which activity is part of anomaly investigation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSMP” is a trademark of its owner, used for identification only.