EC-COUNCIL 512-50 試験概要:
| 認定ベンダー: | EC-Council |
|---|---|
| 試験名: | EC-Council 情報セキュリティマネージャー (EISM) 試験 |
| 試験番号: | 512-50 |
| 対応言語: | 英語 |
| 関連資格: | EC-Council Certified Security Analyst (ECSA) Certified Ethical Hacker (CEH) |
| 試験形式: | 選択式問題 |
| 推奨トレーニング: | EC-Council 公式トレーニング |
| 受験申し込み: | EC-Council 公式認定ページ |
| サンプル問題: | EC-COUNCIL 512-50 サンプル問題 |
| 受験方法: | オンラインおよび認定テストセンター(地域やプロバイダーによって異なります) |
| 前提条件: | 情報セキュリティ管理における実務経験、またはCEHやECSAなどの関連資格の保有が推奨されます(必須ではありません)。 |
| 公式シラバスのURL: | https://www.eccouncil.org/programs/information-security-manager-ism/ |
EC-COUNCIL 512-50 試験シラバストピック:
| セクション | 目標 |
|---|---|
| インシデント管理と対応 | - ビジネス継続性と災害復旧 - インシデント検出と対応計画 |
| 情報セキュリティガバナンス | - セキュリティガバナンスのフレームワークとポリシー - 情報セキュリティ管理における役割と責任 |
| コンプライアンスと法的課題 | - 規制コンプライアンス要件 - データ保護およびプライバシー法 |
| 情報セキュリティプログラム管理 | - セキュリティ管理策の実装と監視 - セキュリティプログラムの開発とライフサイクル |
| リスクマネジメント | - リスク対応と軽減戦略 - リスクの特定と評価 |
| セキュリティ監査と監視 | - 継続的な監視と改善 - セキュリティ監査プロセス |
EC-COUNCIL EC-Council Information Security Manager (E|ISM) 認定 512-50 試験問題:
問題 #1
Network Forensics is the prerequisite for any successful legal action after attacks on your Enterprise Network.
Which is the single most important factor to introducing digital evidence into a court of law?
A. Expert forensics witness
B. Fully trained network forensic experts to analyze all data right after the attack
C. Uninterrupted Chain of Custody
D. Comprehensive Log-Files from all servers and network devices affected during the attack
問題 #2
Scenario: Most industries require compliance with multiple government regulations and/or industry standards to meet data protection and privacy mandates.
What is one proven method to account for common elements found within separate regulations and/or standards?
A. Use the Find function of your word processor
B. Design your program to meet the strictest government standards
C. Hire a GRC expert
D. Develop a crosswalk
問題 #3
Scenario: Your company has many encrypted telecommunications links for their world-wide operations.
Physically distributing symmetric keys to all locations has proven to be administratively burdensome, but symmetric keys are preferred to other alternatives.
How can you reduce the administrative burden of distributing symmetric keys for your employer?
A. Use asymmetric encryption for the automated distribution of the symmetric key
B. Use certificate authority to distribute private keys
C. Symmetrically encrypt the key and then use asymmetric encryption to unencrypt it
D. Use a self-generated key on both ends to eliminate the need for distribution
問題 #4
An organization has defined a set of standard security controls. This organization has also defined the circumstances and conditions in which they must be applied. What is the NEXT logical step in applying the controls in the organization?
A. Analyze existing controls on systems
B. Determine the risk tolerance
C. Perform an asset classification
D. Create an architecture gap analysis
問題 #5
The process of creating a system which divides documents based on their security level to manage access to private data is known as
A. security coding
B. privacy protection
C. data classification
D. data security system
解説:
| 問題 #1 正解: C | 問題 #2 正解: D | 問題 #3 正解: A | 問題 #4 正解: C | 問題 #5 正解: C |














1048 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
