Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISTQB logo

Certified Tester Security Test Engineer

Domain 7Objective 3

Improving Holistic View of an ISMS CT-STE Practice Questions (Page 1)

Part of the Security Testing as Part of an Information Security Management System domain, which makes up ~8% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)

27questions here
6free pages
6concepts

Questions 1–5

  1. 1application · medium

    A security test has identified a critical vulnerability in a legacy system. The system owner is resistant to fixing it due to cost. How should the security tester communicate this finding within the ISMS framework?

    Select an answer first
  2. 2foundation · easy

    In which ISMS process does security testing provide input for the selection of security controls?

    Select an answer first
  3. 3foundation · easy

    Which ISMS process is directly supported by the results of security testing?

    Select an answer first
  4. 4expert · hard

    An organization is planning to integrate security testing into its ISMS continual improvement process. They have a limited budget and need to demonstrate improvement over time. What is the most effective approach?

    Select an answer first
  5. 5foundation · easy

    How should security testing recommendations be presented to senior management in an ISMS context?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.