
Information Systems Security Management Professional
Domain 6Objective 2
6.2 Understand, Adhere to, and Promote Professional Ethics ISSMP Practice Questions (Page 6)
Part of the Law, Ethics and Security Compliance Management domain, which accounts for 14% of the ISSMP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 2–3 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
5concepts
14%of the exam
Questions 26–27
- 26
A security team leader notices that several junior analysts are sharing passwords and using unofficial workarounds to access systems, believing this improves efficiency. The leader wants to promote adherence to the ISC2 Code of Ethics and the organization's security policies. What is the most effective first step?
Select an answer first - 27
A CISSP-certified security architect is designing a new system for a government client. The client's project manager, who is not security-certified, insists on a design that the architect knows will leave a critical vulnerability exploitable. The project manager argues that the vulnerability is acceptable because the system is not internet-facing and the threat model is low. The architect has raised concerns twice, but the project manager has overruled them. The architect's employment contract includes a clause requiring compliance with all client directives. What is the most appropriate action for the architect?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to ISSMP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “ISSMP” is a trademark of its owner, used for identification only.