nerdexam
IsacaIsaca

CISM · Question #300

CISM Question #300: Real Exam Question with Answer & Explanation

Sign in or unlock CISM to reveal the answer and full explanation for question #300. The question stem and answer options stay visible for context.

Submitted by jaden.t· Apr 18, 2026Information Security Risk Management

Question

Which of the following is the MOST effective method to ensure organizations have adequate security controls over outsourced services?

Options

  • ARequire regular reviews of the service provider's security policies and processes.
  • BRequire a signed contract obliging the service provider to implement industry best practices.
  • CRequire regular security compliance audits by an agreed.to independent third party.
  • DRequire the service provider to use the organization's security policies and standards.

Unlock CISM to see the answer

You've previewed enough free CISM questions. Unlock CISM for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Third-party risk management#Outsourcing security#Security assurance#Compliance auditing
Full CISM PracticeBrowse All CISM Questions