Proper study guides for CISSP-ISSMP Information Systems Security Management Professional certified begins with preparation products which designed to deliver the by making you pass the CISSP-ISSMP test at your first time. Try the free right now.

ISC2 CISSP-ISSMP Free Dumps Questions Online, Read and Test Now.

NEW QUESTION 1
Mark works as a security manager for SofTech Inc. He is working in a partially equipped office space which contains some of the system hardware, software, telecommunications, and power sources. In which of the following types of office sites is he working?

  • A. Mobile site
  • B. Warm site
  • C. Cold site
  • D. Hot site

Answer: B

NEW QUESTION 2
Fill in the blank with an appropriate word. are used in information security to formalize security policies.

  • A. Model

Answer: A

NEW QUESTION 3
Which of the following terms describes a repudiation of a contract that occurs before the time when performance is due?

  • A. Expected breach
  • B. Actual breach
  • C. Anticipatory breach
  • D. Nonperforming breach

Answer: C

NEW QUESTION 4
Which of the following administrative policy controls is usually associated with government classifications of materials and the clearances of individuals to access those materials?

  • A. Separation of Duties
  • B. Due Care
  • C. Acceptable Use
  • D. Need to Know

Answer: D

NEW QUESTION 5
Which of the following sections come under the ISO/IEC 27002 standard?

  • A. Financial assessment
  • B. Asset management
  • C. Security policy
  • D. Risk assessment

Answer: BCD

NEW QUESTION 6
Change Management is used to ensure that standardized methods and procedures are used for efficient handling of all changes. Who decides the category of a change?

  • A. The Problem Manager
  • B. The Process Manager
  • C. The Change Manager
  • D. The Service Desk
  • E. The Change Advisory Board

Answer: C

NEW QUESTION 7
Which of the following concepts represent the three fundamental principles of information security? Each correct answer represents a complete solution. Choose three.

  • A. Confidentiality
  • B. Integrity
  • C. Availability
  • D. Privacy

Answer: ABC

NEW QUESTION 8
Your project team has identified a project risk that must be responded to. The risk has been recorded in the risk register and the project team has been discussing potential risk responses for the risk event. The event is not likely to happen for several months but the probability of the event is high. Which one of the following is a valid response to the identified risk event?

  • A. Earned value management
  • B. Risk audit
  • C. Technical performance measurement
  • D. Correctiveaction

Answer: D

NEW QUESTION 9
You work as the project manager for Bluewell Inc. You are working on NGQQ Project for your company. You have completed the risk analysis processes for the risk events. You and the project team have created risk responses for most of the identified project risks. Which of the following risk response planning techniques will you use to shift the impact of a threat to a third party, together with the responses?

  • A. Risk mitigation
  • B. Risk acceptance
  • C. Risk avoidance
  • D. Risk transference

Answer: D

NEW QUESTION 10
Which of the following are examples of physical controls used to prevent unauthorized access to sensitive materials?

  • A. Thermal alarm systems
  • B. Closed circuit cameras
  • C. Encryption
  • D. Security Guards

Answer: ABD

NEW QUESTION 11
Which of the following characteristics are described by the DIAP Information Readiness Assessment function? Each correct answer represents a complete solution. Choose all that apply.

  • A. It performs vulnerability/threat analysis assessment.
  • B. It identifies and generates IA requirements.
  • C. It provides data needed to accurately assess IA readiness.
  • D. It provides for entry and storage of individual system dat

Answer: ABC

NEW QUESTION 12
Which of the following laws is the first to implement penalties for the creator of viruses, worms, and other types of malicious code that causes harm to the computer systems?

  • A. Gramm-Leach-Bliley Act
  • B. Computer Fraud and Abuse Act
  • C. Computer Security Act
  • D. Digital Millennium Copyright Act

Answer: B

NEW QUESTION 13
Which of the following types of agreement creates a confidential relationship between the parties to protect any type of confidential and proprietary information or a trade secret?

  • A. SLA
  • B. NDA
  • C. Non-price competition
  • D. CNC

Answer: B

NEW QUESTION 14
Which of the following security issues does the Bell-La Padula model focus on?

  • A. Authentication
  • B. Confidentiality
  • C. Integrity
  • D. Authorization

Answer: B

NEW QUESTION 15
What component of the change management system is responsible for evaluating, testing, and documenting changes created to the project scope?

  • A. Scope Verification
  • B. Project Management Information System
  • C. Integrated Change Control
  • D. Configuration Management System

Answer: D

NEW QUESTION 16
Eric is the project manager of the NQQ Project and has hired the ZAS Corporation to complete part of the project work for Eric's organization. Due to a change request the ZAS Corporation is no longer needed on the project even though they have completed nearly all of the project work. Is Eric's organization liable to pay the ZAS Corporation for the work they have completed so far on the project?

  • A. Yes, the ZAS Corporation did not choose to terminate the contract work.
  • B. It depends on what the outcome of a lawsuit will determine.
  • C. It dependson what the termination clause of the contract stipulates.
  • D. No, the ZAS Corporation did not complete all of the wor

Answer: C

Thanks for reading the newest CISSP-ISSMP exam dumps! We recommend you to try the PREMIUM DumpSolutions CISSP-ISSMP dumps in VCE and PDF here: https://www.dumpsolutions.com/CISSP-ISSMP-dumps/ (218 Q&As Dumps)