Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 211 discussion

Actual exam question from Isaca's CISM
Question #: 211
Topic #: 1
[All CISM Questions]

Following a risk assessment, new countermeasures have been approved by management. Which of the following should be performed NEXT?

  • A. Schedule the target end date for implementation activities.
  • B. Develop an implementation strategy.
  • C. Budget the total cost of implementation activities.
  • D. Calculate the cost for each countermeasure.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Broesweelies
Highly Voted 1 year, 10 months ago
Selected Answer: B
According to ISACA, following a risk assessment, the next step after new countermeasures have been approved by management should be to develop an implementation strategy. This includes planning and coordinating the implementation of the countermeasures, and identifying any potential roadblocks or issues that may arise during the implementation process. This step is crucial to ensure that the implementation is successful and that the countermeasures are put in place in an efficient and effective manner. Once the implementation strategy is developed, schedule the target end date for implementation activities, budget the total cost of implementation activities, and calculate the cost for each countermeasure can be done.
upvoted 11 times
...
RagazzoAlex
Most Recent 4 months ago
Selected Answer: B
How the management will approve without knowing the involved cost. I go with B
upvoted 1 times
...
oluchecpoint
9 months, 3 weeks ago
Selected Answer: B
B, "Develop an implementation strategy," should be performed next. The correct sequence of actions might be: Develop an implementation strategy (B) Budget the total cost of implementation activities (C) Calculate the cost for each countermeasure (D) Schedule the target end date for implementation activities (A)
upvoted 2 times
...
POWNED
12 months ago
Selected Answer: B
Never assume that the company missed a step. ISACA would never do this to you. If management approved that means we can surmise that every step before approval was completed. This makes the obvious answer B.
upvoted 1 times
AlexJacobson
10 months ago
One advice that a person who passed the exam with close to 800 points (which is max number of points possible) gave me is to never assume and infer stuff that aren't there. Everything you need to answer the question is in the question itself, you only need to read it carefully.
upvoted 3 times
...
...
oluchecpoint
1 year, 2 months ago
B, "Develop an implementation strategy," should be performed next. The correct sequence of actions might be: Develop an implementation strategy (B) Budget the total cost of implementation activities (C) Calculate the cost for each countermeasure (D) Schedule the target end date for implementation activities (A)
upvoted 2 times
...
Agamennore
1 year, 2 months ago
Selected Answer: B
After the approval, start the implementation phase
upvoted 1 times
...
todush
1 year, 3 months ago
Approval of countermeasures by the management needs the prior calculation of the cost of each countermeasure and budgeting. Developing an implementation strategy is a preamble to scheduling the implementation activities. So B is the good response.
upvoted 1 times
...
karanvp
1 year, 5 months ago
How come the management approve the countermeasure without cost if answer is D?
upvoted 2 times
...
wello
1 year, 5 months ago
Selected Answer: D
calculate the cost so we can decide if it exceeds the asset value.
upvoted 3 times
...
richck102
1 year, 5 months ago
B. Develop an implementation strategy.
upvoted 1 times
...
meelaan
1 year, 8 months ago
Selected Answer: B
I think cost is required for approval. As approvals are already done one should start planning for execution
upvoted 2 times
...
jaiz
1 year, 8 months ago
Selected Answer: B
Calculation in D can be part of the strategy. So B should be more accurate i think.
upvoted 2 times
...
DelTrotter
1 year, 11 months ago
Selected Answer: B
After costs for countermeasures are approved, the implementation strategy must be defined along with the exact timelines (i.e. dates).
upvoted 3 times
...
Ziggybooboo
1 year, 11 months ago
Not sure management would approve a counter measure without a business case detailing costs
upvoted 4 times
ZeeM12
1 year, 9 months ago
That's what I was thinking as well. If ISACA is focused on cost, approving a countermeasure without knowing the cost impact to the org. The question leaves room for assumptions to be made.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...