Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 238 discussion

Actual exam question from Isaca's CISM
Question #: 238
Topic #: 1
[All CISM Questions]

It is MOST important for an information security manager to ensure that security risk assessments are performed:

  • A. during a root cause analysis.
  • B. as part of the security business case.
  • C. consistently throughout the enterprise.
  • D. in response to the threat landscape.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Josef4CISM
1 month ago
C because: If you apply different risk management frameworks, your results will not be comparable anymore. E.g., if you use a 5x5 risk matrix for calculating one risk and user another calculation approach for another risk, than the risks are hardly comparable.
upvoted 1 times
...
yottabyte
8 months, 1 week ago
Selected Answer: C
C is the apt choice here.
upvoted 1 times
...
karanvp
1 year, 5 months ago
If answer is C, then Can some one explain what is the point of doing risk assessments for tsunami if the location is exist inland area (No thread landscape)
upvoted 1 times
Learner76
11 months, 1 week ago
As part of the assessment, places with no relevant risk will be treated as such.
upvoted 1 times
...
...
richck102
1 year, 5 months ago
Selected Answer: C
C. consistently throughout the enterprise.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...