Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Information Systems Security Management Professional

Domain 6Objective 2

6.2 Understand, Adhere to, and Promote Professional Ethics ISSMP Practice Questions (Page 5)

Part of the Law, Ethics and Security Compliance Management domain, which accounts for 14% of the ISSMP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 2–3 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)

27questions here
6free pages
5concepts
14%of the exam

Questions 21–25

  1. 21application · medium

    A multinational corporation is updating its organizational code of ethics. The compliance team wants the code to be effective across diverse regional offices with different cultural norms. The CEO asks the security manager to ensure the code genuinely influences employee behavior rather than being a document that is filed away. Which approach would most effectively achieve this goal?

    Select an answer first
  2. 22expert · hard

    A technology startup is growing rapidly and has just hired its first security manager. The startup has no formal code of ethics, and the founders are skeptical of bureaucracy. They want to maintain a fast-paced, innovative culture. The security manager must introduce a code of ethics without stifling the startup's agility. What is the most effective approach?

    Select an answer first
  3. 23application · medium

    A CISSP-certified security consultant is hired to assess a client's network. During the assessment, the consultant discovers evidence of illegal activity originating from the client's systems. The client asks the consultant to keep the finding confidential, citing attorney-client privilege. The consultant is not a lawyer. What should the consultant do in accordance with the ISC2 Code of Ethics?

    Select an answer first
  4. 24application · medium

    A security director is tasked with implementing a new organizational code of ethics focused on data privacy. The company has a high turnover rate in its IT department, and many staff members have expressed that they do not understand how the code applies to their daily tasks. What should the director do first to address this implementation challenge?

    Select an answer first
  5. 25expert · hard

    A security manager is implementing a new code of ethics in an organization where the sales team has a strong culture of aggressive target achievement. The sales team views the code as an obstacle to closing deals. The manager has limited budget for training and must choose one initiative to change the sales team's perception. Which initiative is most likely to be effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSMP” is a trademark of its owner, used for identification only.