New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca CISM Exam - Topic 1 Question 22 Discussion

Actual exam question for Isaca's CISM exam
Question #: 22
Topic #: 1
[All CISM Questions]

Which of the following should be done FIRST when establishing security measures for personal data stored and processed on a human resources....system?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Alisha
4 months ago
A PIA is important, but it feels like it comes later in the process.
upvoted 0 times
...
Mica
4 months ago
A separate network sounds good, but is it really the first step?
upvoted 0 times
...
Cherry
4 months ago
Wait, shouldn't we evaluate encryption tech before anything else?
upvoted 0 times
...
Frederica
4 months ago
Definitely agree with that! You need to know your weaknesses.
upvoted 0 times
...
Tawny
5 months ago
I think conducting a vulnerability assessment is key first.
upvoted 0 times
...
Delbert
5 months ago
I feel like moving the system to a separate network might be a good idea, but it seems more like a later step after assessing risks.
upvoted 0 times
...
Ranee
5 months ago
I'm not entirely sure, but I remember something about vulnerability assessments being crucial for understanding existing weaknesses.
upvoted 0 times
...
Tennie
5 months ago
I think the first step should be conducting a privacy impact assessment. It helps identify risks before implementing other measures.
upvoted 0 times
...
Alesia
5 months ago
I practiced a similar question, and I think evaluating encryption technologies comes after understanding the data's sensitivity and risks.
upvoted 0 times
...
Vicente
5 months ago
This seems like a straightforward Windows administration question, but I want to make sure I understand the nuances of the PowerShell cmdlet and parameters. I'll review my notes and try to eliminate the incorrect options.
upvoted 0 times
...
Roslyn
5 months ago
I'm feeling pretty confident about this one. I think option B, using separate publication lists within a single account, is the way to go. It's a simple and straightforward solution that should meet the requirements.
upvoted 0 times
...

Save Cancel