exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 792 discussion

Actual exam question from Isaca's CISM
Question #: 792
Topic #: 1
[All CISM Questions]

An organization recently purchased data loss prevention (DLP) software but soon discovered the software fails to detect or prevent data loss.

Which of the following should the information security manager do FIRST?

  • A. Revise the data classification policy.
  • B. Review the contract.
  • C. Review the configuration
  • D. Implement stricter data loss controls.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Josef4CISM
1 month, 2 weeks ago
Selected Answer: C
Why on earth people choose A? You should not change your security requirements right away, if you cannot implement the related measure efficiently. Instead, it would be wise to first look for the cause (e.g., why the DLP software is not working)? If nothing helps and you cannot implement measures as requirements state, then you might want to consider changing requirements (e.g., maybe requirements were wrongly set / identified). Option C is the right one for me.
upvoted 2 times
...
ServerBrain
4 months, 2 weeks ago
Selected Answer: A
information security manager does not review config
upvoted 1 times
...
Raj91188
5 months, 2 weeks ago
Selected Answer: C
Review the configuration
upvoted 1 times
...
helg420
9 months, 3 weeks ago
Selected Answer: C
Review the configuration
upvoted 1 times
...
bronay
10 months, 2 weeks ago
Selected Answer: A
Key word - First thing to do is review the classification data.
upvoted 2 times
Josef4CISM
1 month, 2 weeks ago
It says "revise" in the question and not "review" (e.g., changing the DLP requirements).
upvoted 1 times
...
...
richck102
1 year, 7 months ago
C. Review the configuration
upvoted 1 times
...
Souvik124
2 years ago
C. Review the configuration should be the FIRST step for the information security manager.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago