Free ISSMP Exam Braindumps

Pass your Information Systems Security Management Professional exam with these free Questions and Answers

Page 13 of 44
QUESTION 56

Which of the following refers to an information security document that is used in the United States Department of Defense (DoD) to describe and accredit networks and systems?

  1. A. SSAA
  2. B. FITSAF
  3. C. FIPS
  4. D. TCSEC

Correct Answer: A

QUESTION 57

Which of the following statements are true about a hot site? Each correct answer represents a complete solution. Choose all that apply.

  1. A. It can be used within an hour for data recovery.
  2. B. It is cheaper than a cold site but more expensive than a worm site.
  3. C. It is the most inexpensive backup site.
  4. D. It is a duplicate of the original site of the organization, with full computer systems as well as near-complete backups of user data.

Correct Answer: AD

QUESTION 58

Which of the following is a formula, practice, process, design, instrument, pattern, or compilation of information which is not generally known, but by which a business can obtain an economic advantage over its competitors?

  1. A. Utility model
  2. B. Cookie
  3. C. Copyright
  4. D. Trade secret

Correct Answer: D

QUESTION 59

You work as a Senior Marketing Manger for Umbrella Inc. You find out that some of the software applications on the systems were malfunctioning and also you were not able to access your remote desktop session. You suspected that some malicious attack was performed on the network of the company. You immediately called the incident response team to handle the situation who enquired the Network Administrator to acquire all relevant information regarding the malfunctioning. The Network Administrator informed the incident response team that he was reviewing the security of the network which caused all these problems. Incident response team announced that this was a controlled event not an incident. Which of the following steps of an incident handling process was performed by the incident response team?

  1. A. Containment
  2. B. Eradication
  3. C. Preparation
  4. D. Identification

Correct Answer: D

QUESTION 60

NIST Special Publication 800-50 is a security awareness program. It is designed for those people who are currently working in the information technology field and want information on security policies. Which of the following are some of its critical steps? Each correct answer represents a complete solution. Choose two.

  1. A. Awareness and Training Material Effectiveness
  2. B. Awareness and Training Material Development
  3. C. Awareness and Training Material Implementation
  4. D. Awareness and Training Program Design

Correct Answer: BD

Page 13 of 44

Post your Comments and Discuss ISC2 ISSMP exam with other Community members: