CISSP-ISSMP Exam Details

  • Exam Code
    :CISSP-ISSMP
  • Exam Name
    :ISSMP - Information Systems Security Management Professional (ISSMP)
  • Certification
    :ISC Certifications
  • Vendor
    :ISC
  • Total Questions
    :218 Q&As
  • Last Updated
    :May 31, 2026

ISC CISSP-ISSMP Online Questions & Answers

  • Question 51:

    Fill in the blank with an appropriate phrase. _______is a branch of forensic science pertaining to legal evidence found in computers and digital storage media.

    A. Computer forensics

  • Question 52:

    Which of the following is a documentation of guidelines that are used to create archival copies of important data?

    A. User policy
    B. Security policy
    C. Audit policy
    D. Backup policy

  • Question 53:

    You work as a security manager for SoftTech Inc. You along with your team are doing the disaster recovery for your project.

    Which of the following steps are performed by you for secure recovery based on the extent of the disaster and the organization's recovery ability? Each correct answer represents a part of the solution. Choose three.

    A. Recover to an alternate site for critical functions
    B. Restore full system at an alternate operating site
    C. Restore full system after a catastrophic loss
    D. Recover at the primary operating site

  • Question 54:

    John works as a security manager for Soft Tech Inc. He is working with his team on the disaster recovery management plan. One of his team members has a doubt related to the most cost effective DRP testing plan. According to you, which of the following disaster recovery testing plans is the most cost-effective and efficient way to identify areas of overlap in the plan before conducting more demanding training exercises?

    A. Full-scale exercise
    B. Walk-through drill
    C. Evacuation drill
    D. Structured walk-through test

  • Question 55:

    Which of the following is the correct order of digital investigations Standard Operating Procedure (SOP)?

    A. Initial analysis, request for service, data collection, data reporting, data analysis
    B. Initial analysis, request for service, data collection, data analysis, data reporting
    C. Request for service, initial analysis, data collection, data analysis, data reporting
    D. Request for service, initial analysis, data collection, data reporting, data analysis

  • Question 56:

    You are the program manager for your project. You are working with the project managers regarding the procurement processes for their projects. You have ruled out one particular contract type because it is considered too risky for the program.

    Which one of the following contract types is usually considered to be the most dangerous for the buyer?

    A. Cost plus incentive fee
    B. Fixed fee
    C. Cost plus percentage of costs
    D. Time and materials

  • Question 57:

    What are the steps related to the vulnerability management program? Each correct answer represents a complete solution. Choose all that apply.

    A. Maintain and Monitor
    B. Organization Vulnerability
    C. Define Policy
    D. Baseline the Environment

  • Question 58:

    You are responsible for network and information security at a metropolitan police station. The most important concern is that unauthorized parties are not able to access data. What is this called?

    A. Availability
    B. Encryption
    C. Integrity
    D. Confidentiality

  • Question 59:

    Which of the following governance bodies provides management, operational and technical controls to satisfy security requirements?

    A. Senior Management
    B. Business Unit Manager
    C. Information Security Steering Committee
    D. Chief Information Security Officer

  • Question 60:

    Peter works as a Computer Hacking Forensic Investigator. He has been called by an organization to conduct a seminar to give necessary information related to sexual harassment within the work place. Peter started with the definition and types of sexual harassment. He then wants to convey that it is important that records of the sexual harassment incidents should be maintained, which helps in further legal prosecution.

    Which of the following data should be recorded in this documentation? Each correct answer represents a complete solution. Choose all that apply.

    A. Names of the victims
    B. Location of each incident
    C. Nature of harassment
    D. Date and time of incident

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only ISC exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CISSP-ISSMP exam preparations and ISC certification application, do not hesitate to visit our Vcedump.com to find your solutions here.