512-50 Exam Details

  • Exam Code
    :512-50
  • Exam Name
    :EC-Council Information Security Manager (E|ISM)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :404 Q&As
  • Last Updated
    :May 25, 2026

EC-COUNCIL 512-50 Online Questions & Answers

  • Question 221:

    An organization licenses and uses personal information for business operations, and a server containing that information has been compromised. What kind of law would require notifying the owner or licensee of this incident?

    A. Data breach disclosure
    B. Consumer right disclosure
    C. Security incident disclosure
    D. Special circumstance disclosure

  • Question 222:

    A system was hardened at the Operating System level and placed into the production environment. Months later an audit was performed and it identified insecure configuration different from the original hardened state. Which of the following security issues is the MOST likely reason leading to the audit findings?

    A. Lack of asset management processes
    B. Lack of change management processes
    C. Lack of hardening standards
    D. Lack of proper access controls

  • Question 223:

    A consultant is hired to do physical penetration testing at a large financial company. In the first day of his assessment, the consultant goes to the company's building dressed like an electrician and waits in the lobby for an employee to pass through the main access gate, then the consultant follows the employee behind to get into the restricted area.

    Which type of attack did the consultant perform?

    A. Shoulder surfing
    B. Tailgating
    C. Social engineering
    D. Mantrap

  • Question 224:

    When an organization claims it is secure because it is PCI-DSS certified, what is a good first question to ask towards assessing the effectiveness of their security program?

    A. How many credit card records are stored?
    B. How many servers do you have?
    C. What is the scope of the certification?
    D. What is the value of the assets at risk?

  • Question 225:

    What are the three stages of an identity and access management system?

    A. Authentication, Authorize, Validation
    B. Provision, Administration, Enforcement
    C. Administration, Validation, Protect
    D. Provision, Administration, Authentication

  • Question 226:

    If your organization operates under a model of "assumption of breach", you should:

    A. Protect all information resource assets equally
    B. Establish active firewall monitoring protocols
    C. Purchase insurance for your compliance liability
    D. Focus your security efforts on high value assets

  • Question 227:

    Which of the following is a primary method of applying consistent configurations to IT systems?

    A. Audits
    B. Administration
    C. Patching
    D. Templates

  • Question 228:

    Which of the following is MOST beneficial in determining an appropriate balance between uncontrolled innovation and excessive caution in an organization?

    A. Define the risk appetite
    B. Determine budget constraints
    C. Review project charters
    D. Collaborate security projects

  • Question 229:

    Creating a secondary authentication process for network access would be an example of?

    A. Nonlinearities in physical security performance metrics
    B. Defense in depth cost enumerated costs
    C. System hardening and patching requirements
    D. Anti-virus for mobile devices

  • Question 230:

    Which business stakeholder is accountable for the integrity of a new information system?

    A. CISO
    B. Compliance Officer
    C. Project manager
    D. Board of directors

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 512-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.