712-50 Dumps

712-50 Free Practice Test

EC-Council 712-50: EC-Council Certified CISO (CCISO)

QUESTION 11

- (Exam Topic 5)
SCENARIO: A Chief Information Security Officer (CISO) recently had a third party conduct an audit of the security program. Internal policies and international standards were used as audit baselines. The audit report was presented to the CISO and a variety of high, medium and low rated gaps were identified.
The CISO has validated audit findings, determined if compensating controls exist, and started initial remediation planning. Which of the following is the MOST logical next step?

Correct Answer: C

QUESTION 12

- (Exam Topic 5)
Which of the following information would MOST likely be reported at the board-level within an organization?

Correct Answer: C

QUESTION 13

- (Exam Topic 3)
Your company has a “no right to privacy” notice on all logon screens for your information systems and users sign an Acceptable Use Policy informing them of this condition. A peer group member and friend comes to you and requests access to one of her employee’s email account. What should you do? (choose the BEST answer):

Correct Answer: B

QUESTION 14

- (Exam Topic 3)
An example of professional unethical behavior is:

Correct Answer: C

QUESTION 15

- (Exam Topic 5)
Scenario: Your program is developed around minimizing risk to information by focusing on people, technology, and operations.
You have decided to deal with risk to information from people first. How can you minimize risk to your most sensitive information before granting access?

Correct Answer: A