New Year Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Isaca NIST-COBIT-2019 ISACA Implementing the NIST Cybersecurity Framework using COBIT 2019 Exam Practice Test

Demo: 15 questions
Total 50 questions

ISACA Implementing the NIST Cybersecurity Framework using COBIT 2019 Questions and Answers

Question 1

The seven high-level CSF steps generally align to which of the following in COBIT 2019?

Options:

A.

High-level phases

B.

High-level functions

C.

High-level categories

Question 2

Which of the following is the MOST critical process tool to performing Implementation Phase 3-Where Do We Want to Be?

Options:

A.

Control self-assessment

B.

Gap assessment

C.

Cost-benefit analysis

Question 3

Which of the following is a framework principle established by NIST as an initial framework consideration?

Options:

A.

Avoiding business risks

B.

Impact on global operations

C.

Ensuring regulatory compliance

Question 4

Which of the following is the MOST beneficial result of an effective CSF implementation plan?

Options:

A.

Cybersecurity risk management practices are formalized and institutionalized.

B.

Key stakeholders understand the quick wins of the cybersecurity program.

C.

Key stakeholders understand the cybersecurity requirements of the chosen vendors.

Question 5

Within the CSF Core structure, which type of capability can be implemented to help practitioners recognize potential or realized risk to enterprise assets?

Options:

A.

Protection capability

B.

Response capability

C.

Detection capability

Question 6

The goals cascade supports prioritization of management objectives based on:

Options:

A.

the prioritization of enterprise goals.

B.

the prioritization of business objectives.

C.

the prioritization of stakeholder needs.

Question 7

Which of the following is an objective of COBIT Implementation Phase 3 - Where Do We Want to Be?

Options:

A.

Determine the current capability of selected processes.

B.

Identify critical processes or other components addressed in the improvement plan.

C.

Create a detailed business case and high-level program plan.

Question 8

Which of the following is the PRIMARY reason for establishing open communication between all participants and stakeholders as part of the implementation phase?

Options:

A.

To describe the high-level roadmap for achieving the vision

B.

To ensure issues can be identified and resolved

C.

To establish the sharing of information with external partners

Question 9

Analysis is one of the categories within which of the following Core Functions?

Options:

A.

Detect

B.

Respond

C.

Recover

Question 10

An organization is concerned that there will be resistance in attempts to close gaps between the current and target profiles. Which of the following is the

BEST approach to gain support for the process?

Options:

A.

Implement organization-wide training on the CSF.

B.

Communicate management opinions regarding the project.

C.

Identify quick wins for implementation first.

Question 11

Which of the following should an organization review to gain a better understanding of the likelihood and impact of cybersecurity events?

Options:

A.

Relevant internal or external capability benchmarks

B.

Cybersecurity frameworks, standards, and guidelines

C.

Cyber threat information from internal and external sources

Question 12

Which of the following is an objective of Implementation Phase 3 - Where Do We Want to Be?

Options:

A.

Integrate the improvement projects into the overall program plan.

B.

Monitor, measure, and report on project progress.

C.

Create a detailed business case and high-level program plan from gathered information.

Question 13

Which of the following is a PRIMARY input into Steps 2 and 3: Orient and Create a Current Profile?

Options:

A.

Evaluating business cases

B.

Updating business cases

C.

Defining business cases

Question 14

Which of the following represents a best practice for completing CSF Step 3: Create a Current Profile?

Options:

A.

Procuring solutions that are cost-effective and fit the organization's technical architecture

B.

Assessing current availability, performance, and capacity to create a baseline

C.

Engaging in a dialogue and obtaining input to determine appropriate goals, tiers, and

Activities

Question 15

The PRIMARY function of COBIT Implementation Phase 7: How Do We Keep the Momentum Going is to provide an opportunity for which of the

following?

Options:

A.

Closing the loop for communication workflow

B.

Documenting improvements in a prioritized action plan

C.

Ensuring frequent stakeholder communication

Demo: 15 questions
Total 50 questions