712-50 Exam Details

  • Exam Code
    :712-50
  • Exam Name
    :EC-Council Certified CISO (CCISO)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :468 Q&As
  • Last Updated
    :

EC-COUNCIL 712-50 Online Questions & Answers

  • Question 431:

    The patching and monitoring of systems on a consistent schedule is required by?

    A. Industry best practices
    B. Audit best practices
    C. Risk Management framework
    D. Local privacy laws

  • Question 432:

    What is the difference between encryption and tokenization?

    A. Tokenization combined with hashing is always better than encryption
    B. Encryption can be mathematically reversed to provide the original information
    C. The token contains the all original information
    D. Tokenization can be mathematically reversed to provide the original information

  • Question 433:

    What is the estimate of all direct and indirect costs associated with an asset or acquisition over its entire life cycle?

    A. Total Cost of Production
    B. Total Cost of Ownership
    C. Return on Investment
    D. Total Cost of Product

  • Question 434:

    Scenario: Your corporate systems have been under constant probing and attack from foreign IP addresses for more than a week. Your security team and security infrastructure have performed well under the stress. You are confident that your defenses have held up under the test, but rumors are spreading that sensitive customer data has been stolen and is now being sold on the Internet by criminal elements. During your investigation of the rumored compromise you discover that data has been breached and you have discovered the repository of stolen data on a server located in a foreign country.

    Your team now has full access to the data on the foreign server. Your defenses did not hold up to the test as originally thought. As you investigate how the data was compromised through log analysis you discover that a hardworking, but misguided business intelligence analyst posted the data to an obfuscated URL on a popular cloud storage service so they could work on it from home during their off-time.

    Which technology or solution could you deploy to prevent employees from removing corporate data from your network?

    A. Rigorous syslog reviews
    B. Intrusion Detection Systems (IDS)
    C. Security Guards posted outside the Data Center
    D. Data Loss Prevention (DLP)

  • Question 435:

    As the CISO, you are the project sponsor for a highly visible log management project. The objective of the project is to centralize all the enterprise logs into a security information and event management (SIEM) system. You requested the results of the performance quality audits activity.

    The performance quality audit activity is done in what project management process group?

    A. Executing
    B. Controlling
    C. Planning
    D. Closing

  • Question 436:

    What process defines the framework of rules and practices by which a board of directors ensure accountability, fairness and transparency in an organization's relationship with its shareholders?

    A. Internal Audit
    B. Corporate governance
    C. Risk Oversight
    D. Key Performance Indicators

  • Question 437:

    An organization information security policy serves to___________________.

    A. define security configurations for systems
    B. establish budgetary input in order to meet compliance requirements
    C. establish acceptable systems and user behavior
    D. define relationships with external law enforcement agencies
    E. None

  • Question 438:

    You are just hired as the new CISO and are being briefed on all the Information Security projects that your section has on going. You discover that most projects are behind schedule and over budget. Using the best business practices for project management you determine that the project correct aligns with the company goals.

    What needs to be verified FIRST?

    A. Training of the personnel on the project
    B. Timeline of the project milestones
    C. Vendor for the project
    D. Scope of the project

  • Question 439:

    Control Objectives for Information and Related Technology (COBIT) is which of the following?

    A. An audit guideline for certifying secure systems and controls
    B. An information Security audit standard
    C. A framework for Information Technology management and governance
    D. A set of international regulations for Information Technology governance

  • Question 440:

    An organization has decided to develop an in-house BCM capability. The organization has determined it is best to follow a BCM standard published by the International Organization for Standardization (ISO). The BEST ISO standard to follow that outlines the complete lifecycle of BCM is?

    A. ISO 22318 Supply Chain Continuity
    B. ISO 27031 BCM Readiness
    C. ISO 22301 BCM Requirements
    D. ISO 22317 BIA

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 712-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.