Which of the following refers to the quantity or quality of project deliverables expanding from the original project plan?
A. Scope creep
B. Deadline extension
C. Deliverable expansion
D. Scope modification
Which of the following is considered one of the most frequent failures in project management?
A. Overly restrictive management
B. Insufficient resources
C. Excessive personnel on project
D. Failure to meet project deadlines
A recommended method to document the respective roles of groups and individuals for a given process is to:
A. Develop a detailed internal organization chart
B. Develop an isolinear response matrix with cost benefit analysis projections
C. Develop a Responsible, Accountable, Consulted, Informed (RACI) chart
D. Develop a telephone call tree for emergency response
A stakeholder is a person or group:
A. Vested in the success and/or failure of a project or initiative regardless of budget implications.
B. That will ultimately use the system.
C. That has budget authority.
D. Vested in the success and/or failure of a project or initiative and is tied to the project budget.
Which of the following represents the BEST method of ensuring security program alignment to business needs?
A. Ensure the organization has strong executive-level security representation through clear sponsorship or the creation of a CISO role
B. Create a comprehensive security awareness program and provide success metrics to business units
C. Create security consortiums, such as strategic security planning groups, that include business unit participation
D. Ensure security implementations include business unit testing and functional validation prior to production rollout
How often should the Statements of Standards for Attestation Engagements-16 (SSAE16)/International Standard on Assurance Engagements 3402 (ISAE3402) report of your vendors be reviewed?
A. Annually
B. Quarterly
C. Bi-annually
D. Semi-annually
The Security Operations Center (SOC) just purchased a new intrusion prevention system (IPS) that needs to be deployed in-line for best defense. The IT group is concerned about putting the new IPS in-line because it might negatively impact network availability.
What would be the BEST approach for the CISO to reassure the IT group?
A. Explain to the IT group that this is a business need and the IPS will fail open however, if there is a network failure the CISO will accept responsibility
B. Work with the IT group and tell them to put IPS in-line and say it won't cause any network impact
C. Explain to the IT group that the IPS will fail open once in-line however it will be deployed in monitor mode for a set period of time to ensure that it doesn't block any legitimate traffic
D. Explain to the IT group that the IPS won't cause any network impact because it will fail open
Risk appetite is typically determined by which of the following organizational functions?
A. Business units
B. Board of Directors
C. Audit and compliance
D. Security
Which of the following represents the BEST method for obtaining business unit acceptance of security controls within an organization?
A. Allow the business units to decide which controls apply to their systems, such as the encryption of sensitive data
B. Ensure business units are involved in the creation of controls and defining conditions under which they must be applied
C. Provide the business units with control mandates and schedules of audits for compliance validation
D. Create separate controls for the business based on the types of business and functions they perform
In effort to save your company money which of the following methods of training results in the lowest cost for the organization?
A. One-One Training
B. Self-Study (noncomputerized)
C. Distance learning/Web seminars
D. Formal Class
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 712-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.