
Certified Tester Security Test Engineer
Domain 7Objective 3
Improving Holistic View of an ISMS CT-STE Practice Questions (Page 5)
Part of the Security Testing as Part of an Information Security Management System domain, which makes up ~8% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
6concepts
Questions 21–25
- 21
What does a holistic security testing strategy within an ISMS consider?
Select an answer first - 22
Why is it important for a security testing strategy to include organizational aspects?
Select an answer first - 23
An organization's ISMS has identified that its customer database is a high-risk asset due to regulatory requirements. The security team is planning testing activities. How should they prioritize testing for this asset?
Select an answer first - 24
A company is considering implementing an ISMS. The CEO asks how security testing will change once the ISMS is in place. What is the most accurate response?
Select an answer first - 25
A multinational company is developing a holistic security testing strategy. They must comply with data protection regulations that require personal data to be stored in specific regions. They also have a global workforce. What is a key consideration for the testing strategy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.