EC-COUNCIL EC-Council Information Security Manager (E|ISM) 認定 512-50 試験問題:
1. Which of the following international standards can be BEST used to define a Risk Management process in an organization?
A) National Institute for Standards and Technology 800-50 (NIST 800-50)
B) International Organization for Standardizations - 27005 (ISO-27005)
C) International Organization for Standardizations - 27004 (ISO-27004)
D) Payment Card Industry Data Security Standards (PCI-DSS)
2. What role should the CISO play in properly scoping a PCI environment?
A) Work with a Qualified Security Assessor (QSA) to determine the scope of the PCI environment
B) Validate the business units' suggestions as to what should be included in the scoping process
C) Complete the self-assessment questionnaire and work with an Approved Scanning Vendor (ASV) to determine scope
D) Ensure internal scope validation is completed and that an assessment has been done to discover all credit card data
3. Which of the following conditions would be the MOST probable reason for a security project to be rejected by the executive board of an organization?
A) The NPV of the project is negative
B) The Return on Investment (ROI) is larger than 10 months
C) The ROI is lower than 10 months
D) The Net Present Value (NPV) of the project is positive
4. You are just hired as the new CISO and are being briefed on all the Information Security projects that your section has on going. You discover that most projects are behind schedule and over budget.
Using the best business practices for project management you determine that the project correctly aligns with the company goals and the scope of the project is correct. What is the NEXT step?
A) Verify budget
B) Verify constraints
C) Verify resources
D) Review time schedules
5. You have purchased a new insurance policy as part of your risk strategy. Which of the following risk strategy options have you engaged in?
A) Risk Transfer
B) Risk Acceptance
C) Risk Mitigation
D) Risk Avoidance
質問と回答:
| 質問 # 1 正解: B | 質問 # 2 正解: D | 質問 # 3 正解: A | 質問 # 4 正解: C | 質問 # 5 正解: A |














1215 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
