Certified Information Systems Security Professional – CISSP – Question007

Which of the following types of technologies would be the MOST cost-effective method to provide a reactive control for protecting personnel in public areas?

A.
Install mantraps at the building entrances
B. Enclose the personnel entry area with polycarbonate plastic
C. Supply a duress alarm for personnel exposed to the public
D. Hire a guard to protect the public area

Correct Answer: D

Certified Information Systems Security Professional – CISSP – Question006

When assessing an organization’s security policy according to standards established by the International Organization for Standardization (ISO) 27001 and 27002, when can management responsibilities be defined?

A.
Only when assets are clearly defined
B. Only when standards are defined
C. Only when controls are put in place
D. Only procedures are defined

Correct Answer: A

Certified Information Systems Security Professional – CISSP – Question005

A company whose Information Technology (IT) services are being delivered from a Tier 4 data center, is preparing a companywide Business Continuity Planning (BCP). Which of the following failures should the IT manager be concerned with?

A.
Application
B. Storage
C. Power
D. Network

Certified Information Systems Security Professional – CISSP – Question004

What is the MOST important consideration from a data security perspective when an organization plans to relocate?

A.
Ensure the fire prevention and detection systems are sufficient to protect personnel
B. Review the architectural plans to determine how many emergency exits are present
C. Conduct a gap analysis of a new facilities against existing security requirements
D. Revise the Disaster Recovery and Business Continuity (DR/BC) plan

Correct Answer: C

Certified Information Systems Security Professional – CISSP – Question001

All of the following items should be included in a Business Impact Analysis (BIA) questionnaire EXCEPT questions that

A.
determine the risk of a business interruption occurring
B. determine the technological dependence of the business processes
C. Identify the operational impacts of a business interruption
D. Identify the financial impacts of a business interruption