
Information Systems Security Management Professional
Domain 6Objective 1
6.1 Identify the Impact of Laws and Regulations That Relate to Information Security ISSMP Practice Questions (Page 2)
Part of the Law, Ethics and Security Compliance Management domain, which accounts for 14% of the ISSMP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 2–3 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)
25questions here
5free pages
4concepts
14%of the exam
Questions 6–10
- 6
An organization that processes credit card transactions is found to be non-compliant with the Payment Card Industry Data Security Standard (PCI DSS). Which of the following is the most immediate and direct risk of this non-compliance?
Select an answer first - 7
Which of the following is a potential consequence of non-conformity with a voluntary security standard?
Select an answer first - 8
Which intellectual property protection is most appropriate for a company's confidential algorithm that provides a competitive advantage and is not publicly disclosed?
Select an answer first - 9
A financial institution is subject to the Gramm-Leach-Bliley Act (GLBA) and is implementing a new customer relationship management (CRM) system that will store nonpublic personal information (NPI). Which of the following is a primary compliance requirement under GLBA for this system?
Select an answer first - 10
What is the most immediate risk to an organization that fails to comply with a mandatory security regulation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSMP” is a trademark of its owner, used for identification only.