CISM Practice Test Questions and Answers for Passing CISM Exam

CISM Certification
ISACA, an independent non-profit organization, offers CISM certification. The prerequisite to getting this certification is you need a minimum of five years of information security experience within ten years before the certification. Also, three out of those five years should be in management.
Benefits of CISM Certification
The CISM certification will impart best practices in international security. It is an IT certification with a blend of management. The certification also validates your skills to develop, manage, and implement information security programs in your organizations.
Benefits to your Career
By having a CISM certification, employers prefer to hire you over others. You will have one of the most prestigious certifications which will accelerate your career. A certified CISM professional will draw a salary ranging between $52,402 to $243,610 in the USA. There is a lot of demand for information security professionals with management in the IT sector. By getting your-self certified in CISM, you will step into the fantastic world of information security programs.
-------------------------------------------------------------------------------------------------------------------------------
CISM Practice Exam Sample Questions and Answers
CISM is a certified information security manager certification offered by ISACA. This certification validates your skills in the information security program and business goals. Use this CISM braindump to test yourself in information security governance, information risk management, information security incident management, information security program development, and management areas before taking the certification exam. We have compiled CISM exam questions and answers covering all the four domains. You can use our compilation as CISM practice test or a quick capsule to gulp before you appear the CISM certification exam. Our CISM practice questions come with the correct answer and explanation to the answer for your easy understanding. We believe that these cism sample questions will help you to evaluate your knowledge and to have a chance to enrich your skills for passing score while attending the CISM test. Get yourself enrolled in the CISM exam. Good luck.
Exam details: CISM
Exam name: Certified information security manager
Duration: 240 minutes
No. of questions: 200
Passing score: Validated against: ISACA
Format: MCQ
Exam price: $760
----------------------------------------------------------------------------------------------------------------------------
1. What will be the situation that will arise in the mentioned case?
The user is working continuously after the end of or duration of the login hours.
A. There will be no effect on the working of the user it will continue just the thing is that any new user won't be allowed to log in.
B. There will be no effect on the working of the user and he can continue it without any problem.
C. A notification will pop up in your device mentioning the warning and there will be an automatic logout process.
D. The user will be active on the current page and he can see it but he performs any action he will be logged out from the site.
Explanation- there will be no issue if you are viewing the page on the site. But if you try to perform any other options like the opening of the new page there will be a message or notification mentioning that the login attempt has been failed. Or it will show the credential information is incorrect. Or it will show that login hours or location is not allowed. Still, if you want any further help you can contact your admin.
--------------------------------------------------------------------------------------------------------------------------------
2. Mention the following statement is true or false.
If the user is working beyond the login hours there won't be an issue because the user is allowed if he has already logged in. And if any new user tries to login his attempt will be failed.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- there will be no issue if you are viewing the page on the site. But if you try to perform any other options like the opening of the new page there will be a message or notification mentioning that the login attempt has been failed. Or it will show the credential information is incorrect. Or it will show that login hours or location is not allowed. Still, if you want any further help you can contact your admin.
--------------------------------------------------------------------------------------------------------------------------------
3. Which of the following statement is true about settings of the relevant fiscal year?
A. If any fiscal year is enabled once you can never disabled it.
B. Once you defined the settings of the fiscal year it is not possible to edit it any time.
C. There should be proper utilization of the fiscal year if the setting is made according to the Gregorian calendar.
D. All of the above.
Explanation- Once you defined the settings of the fiscal year it is not possible to edit it any time. There should be proper utilization of the fiscal year if the setting is made according to the Gregorian calendar. Both the statement mentioned is incorrect about fiscal year settings. If any fiscal year is enabled once you can never disabled it is an only true statement about fiscal year setting. Hence the correct option is A.
--------------------------------------------------------------------------------------------------------------------------------
4. Mention whether the following statement is true or false.
By using the fiscal year it is possible for the customization work of forecasting.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- the above-mentioned statement is true is custom fiscal year settings helps us to perform customizing forecasting work.
----------------------------------------------------------------------------------------------------------------------------
5. Mention whether the following statement is true or false.
There is an important impact of the custom fiscal year on quotas, forecasts, and reports.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- There is an important impact of the custom fiscal year on quotas, forecasts, and reports. Hence the correct statement is true.
-------------------------------------------------------------------------------------------------------------------------------
6. From the below-mentioned page which of the following setting is available on the information page.
1. IP range
2. Fiscal year
3. Default language
4. Business hours
5. Company login hours
A. All of the above.
B. 4, 2, 3
C. 1, 3, 5
D. 2, 4, 1
Explanation- company login hours and IP range are available at the profile level. From the above option business hour, default language and fiscal year are included in the information page of the company. Whereas the company login hours and IP range are defined at the profile level.
-------------------------------------------------------------------------------------------------------------------------------
7. Mention whether the following statement is true or false.
The fiscal year is used for giving an important impact on reports, forecasts, and quotas. Fiscal policy can be modified.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- There is an important impact of the custom fiscal year on quotas, forecasts, and reports. Hence the above statement is true.
--------------------------------------------------------------------------------------------------------------------------------
8. Many of the users work under an admin. There are various demands which differ from admin to admin. One such demand is about the languages of the user interface. What admin should perform or accomplish the further demands of the user?
A. The admin will change the language setting from the company profile.
B. The locale of the user will be changed by the admin.
C. Admin will ask his users to change the language by going to the personal details and further to the language setting.
D. All of the above.
Explanation- there are two ways that admin can perform for satisfying the demand of users, related to language. Admin will ask his users to change the language by going to the personal details and further to language setting and another way is that admin can itself change the language setting for each user.
--------------------------------------------------------------------------------------------------------------------------------
9. Mention whether the following statement is true or false.
Admin will change the settings according to the user if he demands the personalized language for the user interface.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- there are two ways that admin can perform for satisfying the demand of users, related to language. Admin will ask his users to change the language by going to the personal details and further to language setting and another way is that admin can itself change the language setting for each user. Hence the above-mentioned statement is true.
-------------------------------------------------------------------------------------------------------------------------------
10. Suppose the manager in a company that has a large online portal thing of enabling my domain feature in the Salesforce. From the below-mentioned option, what is the thing the administrator should focus on and consider before enabling my domain feature?
A. Let the user are not allowed for login through the link mentioned below.
http://login.salesforce.com/
B. The visual page's URL will be changed.
C. There is no option for reversing once a new domain has been deployed.
D. All of the above.
E. B and C
F. A and B
Explanation- there are two options for the administrator that he should consider and focus on before enabling my domain feature. My domain enabling does not affect the login process through the link mentioned below.
--------------------------------------------------------------------------------------------------------------------------------
11. The user using your website or application is having trouble within setting up the password. From the below-mentioned option which of the following suggestion you will suggest to him as a solution to his problem.
A. The current password should be something else that he had kept in the last four attempts.
B. There is the option of a password hint. Don't add the password as the password hint.
C. The length of the password must be of a minimum of 8 characters.
D. All of the above
Explanation- for resitting of the password the old password there should be three different passwords which you have entered in the last 3 attempts and option as it is mentioned four the answer is incorrect. And in option B it is mentioned that password hint and password cannot be the same. This is also a wrong statement. A password hint and password can be one. Hence the correct option is C.
----------------------------------------------------------------------------------------------------------------------
12. From the below-mentioned statement which statement is correct about the suggestion suggested for loading the record of 6 million. How will you help the customer?
A. You will ask him for using the data loader.
B. You will ask him for using the data import wizard.
C. You can suggest to him for using the data loading tool of any third party.
D. It is not possible for loading six million records.
Explanation- option A is an incorrect option because the data loader allows entering just 5 million records only and for data above 5 million you have to ask for a data loading tool from the third party. Hence it is the better option for using the third party data loading tool.
------------------------------------------------------------------------------------------------------------------------------
13. Mention which of the following option is correct for the capacity of recording maximum data by data loader.
A. 5 million records
B. 2 million records
C. 6 million records
D. 4 million records.
Explanation- option A is the correct option because the data loader allows entering just 5 million records only and for data above 5 million you have to ask for a data loading tool from the third party. Hence it is a better option for using the third party data loading tool.
------------------------------------------------------------------------------------------------------------------------
14. From the below-mentioned option, what is the correct step of the administrator in the below-mentioned situation?
A user wishes for viewing the report which includes the data that belongs to custom account or the objects.
A. For creating a joined report.
B. For creating a matrix report
C. The administrator can also provide a summary report.
D. He should create a report which is new and just includes custom objects and account.
E. All of the above
Explanation- in the following situation the best action that an administrator could take is making a new report which contains custom accounts and objects.
------------------------------------------------------------------------------------------------------------------------------
16. From the below-mentioned option what must be the best for a sales manager if he wants to create a list of contacts for doing an mail.
A. Mailing
B. Tabular
C. Joined
D. Summary
Explanation- the proper format for generating a list must be in tabular format. It can also be easily mailed for further use and the person receiving the mail could easily understand it.
------------------------------------------------------------------------------------------------------------------------------
17. From the below-mentioned option which is the best option that is used for creating a report.
A Data filter
B. Graph/ Gantt charts
C. Groupings
D. All of the above
Explanation- the setting used during the creation of reports are data filters, craft and chart grouping. Hence the correct option is D.
-----------------------------------------------------------------------------------------------------------------------------
18. Mention whether the following statement is true or false.
Data sorting is a setting used for the creation of the report.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- data sorting is a setting that cannot be used for in the creation of a report but it can be sorted column heading by clicking over it.
-------------------------------------------------------------------------------------------------------------------------------
19. There was a demand for the sales manager to the admin for creating a group of users and assigning them a task. From the below-mentioned option which statement is true about the task which was assigned to a user group.
A. The group functionality of the organization will be enabled.
B. A copy of the task is provided to each member of the group.
C. The same task is assigned to the whole group.
D. Group task assignment is done in personal groups only.
Explanation- in a salesforce copy of one task can be provided to 100 users. Hence the correct option is B.
-----------------------------------------------------------------------------------------------------------------------------
20. From the below-mentioned option, what are the correct numbers of contact that can be set as the primary contact in a shared activity?
A. One
B. Two
C. Three
D. Five
Explanation- in case of the primary contact only one contact can be set as the primary contact in a shared activity. Hence the correct option is A.
--------------------------------------------------------------------------------------------------------------------------------
21. What is the correct action that can be taken in the following situation?
A user wishes to enable the knowledge-based content on public sire for the visitors.
A. You need to install some of the apps from the app exchange.
B. There is no option and you need to use it by default only.
C. You can go to profile settings for enabling the knowledge-based content.
D. For enabling the content on the public site you need to have some custom solution.
Explanation- public knowledge for mobile, Facebook app and web is the name of the application which you need to install from the app exchange.
-------------------------------------------------------------------------------------------------------------------------------
22. From the below-mentioned option which of the following report is supported by the sales force.
A. Joined
B. Tabular
C. Matrix
D. All of the above.
Explanation- sale force support all of the three option mentioned above, joined, matrix and tabular. In general, there is four report format supported by format for the sales force. They are joined, matrix, tabular and summary. Hence the correct option is D.
--------------------------------------------------------------------------------------------------------------------------------
23. Mention whether the following statement is true or false
Custom is the format of the report supported by the sales force.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- In general, there is four report format supported by format for the sales force. They are joined, matrix, tabular and summary. Hence the correct option is B.
-------------------------------------------------------------------------------------------------------------------------------
24. An administrator allows multiple user connections with the sales manager. As demanded by the sales manager through a shared activity. What is the total number of the contact that he can add in his list of multiple users?
A. Ten
B. Twenty
C. Fifty
D. Hundred
Explanation- for shared activity the sales manager can connect up to 50 contacts in his list. The administrator can provide permission for this and enable this setting inactivity setting under the user then this will work further.
-------------------------------------------------------------------------------------------------------------------------------
25. There is a company known as Jan back training company that is trying to add several users for a group task. How many maximum numbers can be added in total?
A. 100
B. 25
- 50
D. 70
Explanation- Jan back training company can add 100 maximum users for a group task as 100 users are allowed as a maximum number for assigning an independent copy of the task. Hence the correct option is 100.
--------------------------------------------------------------------------------------------------------------------------------
26. Mention whether the following statement is true or false.
For a group task, a company can make a group of 150 users but can assign a copy of the task to 100 users.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- a company requires 100 users in maximum for a group but the second part of the statement is correct that a copy of a task can be distributed among 100 users only. Hence the correct option is Partly true and partly false.
-------------------------------------------------------------------------------------------------------------------------------
27. Mention whether the following statement is true or false.
Data sorting parameters are used for defining when the report is created.
A. True
B. False
C. Partly true and partly false
D. None of the above
Explanation- The data sorting method cannot be used for the creation of the report. It is used for sorting the column heading by clicking over it.
Find a course provider to learn CISM
Java training | J2EE training | J2EE Jboss training | Apache JMeter trainingTake the next step towards your professional goals in CISM
Don't hesitate to talk with our course advisor right now
Receive a call
Contact NowMake a call
+1-732-338-7323Enroll for the next batch
Latest blogs on technology to explore

Cybersecurity Training: Powering Digital Defense
Explore top cybersecurity training programs in the USA to meet rising demand in digital defense. Learn about certifications, salaries, and career opportunities in this high-growth field.

Why Pursue Data Science Training?
Empower your career in a data-driven world. Learn why data science training is crucial for high-demand jobs, informed decisions, and staying ahead with essential skills.

What Does a Cybersecurity Analyst Do? 2025
Discover the vital role of a Cybersecurity Analyst in 2025, protecting organizations from evolving cyber threats through monitoring, threat assessment, and incident response. Learn about career paths, key skills, certifications, and why now is the be

Artificial intelligence in healthcare: Medical and Diagnosis field
Artificial intelligence in healthcare: Medical and Diagnosis field

iOS 18.5 Is Here: 7 Reasons You Should Update Right Now
In this blog, we shall discuss Apple releases iOS 18.5 with new features and bug fixes

iOS 18.4.1 Update: Why Now is the Perfect Time to Master iPhone App Development
Discover how Apple’s iOS 18.4.1 update (April 2025) enhances security and stability—and why mastering iPhone app development now is key to building future-ready apps.

What is network security Monitoring? A complete guide
In the digital world, we have been using the cloud to store our confidential data to register our details; it can be forms, applications, or product purchasing platforms like e-commerce sites. Though digital platforms have various advantages, one pri

How to Handle Complex and Challenging Projects with Management Skills
Discover actionable strategies and essential management skills to effectively navigate the intricacies of challenging projects. From strategic planning to adaptive problem-solving, learn how to lead your team and achieve exceptional outcomes in compl