CISSP-ISSMP Exam Details

  • Exam Code
    :CISSP-ISSMP
  • Exam Name
    :ISSMP - Information Systems Security Management Professional (ISSMP)
  • Certification
    :ISC Certifications
  • Vendor
    :ISC
  • Total Questions
    :218 Q&As
  • Last Updated
    :May 31, 2026

ISC CISSP-ISSMP Online Questions & Answers

  • Question 91:

    Software Development Life Cycle (SDLC) is a logical process used by programmers to develop software. Which of the following SDLC phases meets the audit objectives defined below: System and data are validated. System meets all user requirements. System meets all control requirements.

    A. Programming and training
    B. Evaluation and acceptance
    C. Definition
    D. Initiation

  • Question 92:

    Which of the following liabilities is a third-party liability in which an individual may be responsible for an action by another party?

    A. Relational liability
    B. Engaged liability
    C. Contributory liability
    D. Vicarious liability

  • Question 93:

    Which of the following deals is a binding agreement between two or more persons that is enforceable by law?

    A. Outsource
    B. Proposal
    C. Contract
    D. Service level agreement

  • Question 94:

    Change Management is used to ensure that standardized methods and procedures are used for efficient handling of all changes. Who decides the category of a change?

    A. The Problem Manager
    B. The Process Manager
    C. The Change Manager
    D. The Service Desk
    E. The Change Advisory Board

  • Question 95:

    Which of the following processes is described in the statement below? "It is the process of implementing risk response plans, tracking identified risks, monitoring residual risk, identifying new risks, and evaluating risk process effectiveness throughout the project."

    A. Monitor and Control Risks
    B. Identify Risks
    C. Perform Qualitative Risk Analysis
    D. Perform Quantitative Risk Analysis

  • Question 96:

    Which of the following is generally practiced by the police or any other recognized governmental authority?

    A. Phishing
    B. Wiretapping
    C. SMB signing
    D. Spoofing

  • Question 97:

    Which of the following is used to back up forensic evidences or data folders from the network or locally attached hard disk drives?

    A. WinHex
    B. Vedit
    C. Device Seizure
    D. FAR system

  • Question 98:

    Which of the following protocols are used to provide secure communication between a client and a server over the Internet? Each correct answer represents a part of the solution. Choose two.

    A. TLS
    B. HTTP
    C. SNMP
    D. SSL

  • Question 99:

    Which of the following statements best describes the consequences of the disaster recovery plan test?

    A. If no deficiencies were found during the test, then the test was probably flawed.
    B. The plan should not be changed no matter what the results of the test would be.
    C. The results of the test should be kept secret.
    D. If no deficiencies were found during the test, then the plan is probably perfect.

  • Question 100:

    Which of the following refers to an information security document that is used in the United States Department of Defense (DoD) to describe and accredit networks and systems?

    A. SSAA
    B. FITSAF
    C. FIPS
    D. TCSEC

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only ISC exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CISSP-ISSMP exam preparations and ISC certification application, do not hesitate to visit our Vcedump.com to find your solutions here.