Online Access Free 512-50 Practice Test
| Exam Code: | 512-50 |
| Exam Name: | EC-Council Information Security Manager (E|ISM) |
| Certification Provider: | EC-COUNCIL |
| Free Question Number: | 402 |
| Posted: | Dec 20, 2025 |
Scenario: An organization has made a decision to address Information Security formally and consistently by adopting established best practices and industry standards. The organization is a small retail merchant but it is expected to grow to a global customer base of many millions of customers in just a few years.
Which of the following would be the FIRST step when addressing Information Security formally and consistently in this organization?
What is the SECOND step to creating a risk management methodology according to the National Institute of Standards and Technology (NIST) SP 800-30 standard?
A security officer wants to implement a vulnerability scanning program. The officer is uncertain of the state of vulnerability resiliency within the organization's large IT infrastructure. What would be the BEST approach to minimize scan data output while retaining a realistic view of system vulnerability?