CISM Certified Information Security Manager – Question0997

What is the BEST way for a customer to authenticate an e-commerce vendor?

A.
Use a secure communications protocol for the connection.
B. Verify the vendor’s certificate with a certificate authority.
C. Request email verification of the order.
D. Encrypt the order using the vendor’s private key.

Correct Answer: B

CISM Certified Information Security Manager – Question0995

An organization will be outsourcing mission-critical processes.
Which of the following is MOST important to verify before signing the service level agreement (SLA)?

A.
The provider has implemented the latest technologies.
B. The provider’s technical staff are evaluated annually.
C. The provider is widely known within the organization’s industry.
D. The provider has been audited by a recognized audit firm.

Correct Answer: D

CISM Certified Information Security Manager – Question0993

Which of the following is the BEST way to sustain employee interest in information awareness in an organization?

A.
Ensuring a common security awareness program for all staff
B. Relating security awareness programs to security policies
C. Ensuring all staff are involved
D. Using a variety of delivery methods

Correct Answer: D

CISM Certified Information Security Manager – Question0990

A risk has been formally accepted and documented. Which of the following is the MOST important action for an information security manager?

A.
Update risk tolerance levels.
B. Notify senior management and the board.
C. Monitor the environment for changes.
D. Re-evaluate the organization’s risk appetite.

Correct Answer: D