Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 997 discussion

Actual exam question from Isaca's CISM
Question #: 997
Topic #: 1
[All CISM Questions]

A finance department director has decided to outsource the organization's budget application and has identified potential providers. Which of the following actions should be initiated FIRST by the information security manager?

  • A. Determine the required security controls for the new solution.
  • B. Obtain audit reports on the service providers’ hosting environment.
  • C. Review the disaster recovery plans (DRPs) of the providers.
  • D. Align the roles of the organization's and the service providers’ staffs.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
ServerBrain
4 weeks ago
Selected Answer: A
The question is referring to outsourcing the Budget App.
upvoted 1 times
...
AlexJacobson
9 months, 2 weeks ago
Selected Answer: A
This question is actually easier then it looks. Majority of people here, for some reason, are interpreting that by "providers" it is meant "cloud providers", while the question just says that company is considering outsourcing their budget application (not hosting it in a cloud, but purchasing/outsourcing the development of the app). So the first thing is figuring out the security requirements.
upvoted 1 times
...
Uncle_Lucifer
11 months, 2 weeks ago
Selected Answer: A
you cannot audit without providing requirements to the CSP. Answer is A
upvoted 1 times
...
Soleandheel
11 months, 3 weeks ago
A. Determine the required security controls for the new solution.
upvoted 1 times
...
Bl1024
11 months, 4 weeks ago
Selected Answer: B
B. Obtain audit reports on the service providers’ hosting environment.
upvoted 1 times
Soleandheel
11 months, 3 weeks ago
This answer is wrong because, the finance director is yet to decide the provider to go with. A. Determine the required security controls for the new solution.... is the best answer.
upvoted 2 times
...
...
richck102
1 year ago
Selected Answer: A
A. Determine the required security controls for the new solution.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...