Prepare for the Certified Information Security Manager (CISM) certification by ISACA with free exam-style practice questions on CyberCertPrep. The CISM exam has 150 questions, a time limit of CISM hours, and a passing score of 65%.
Choose from Practice mode, Exam Simulation, Weak Areas review, and Daily Challenge. Track your progress with detailed analytics and study with flashcards.
Certified Information Security Manager (CISM) Exam Domain
Focus your study on this domain with targeted practice questions. This domain accounts for 33% of your CISM exam score.
The Information Security Program domain is one of 4 exam domains on the Certified Information Security Manager (CISM) certification exam by ISACA. At 33% of the total exam, this is one of the most heavily weighted domains — mastering it is critical for passing.
The CISM exam consists of 150 questions with a time limit of 4 hours and a passing score of 65%. That means approximately 50 questions on your exam will come from the Information Security Program domain.
Access Control List (ACL)
A list of permissions attached to an object that specifies which users or system processes are granted access to resourc...
Authentication
The process of verifying the identity of a user, device, or system before granting access to resources. Authentication t...
Authorization
The process of determining what resources or actions an authenticated user is permitted to access. While authentication ...
Multi-Factor Authentication (MFA)
A security mechanism that requires two or more independent credentials to verify a user's identity, combining factors fr...
Single Sign-On (SSO)
An authentication scheme that allows a user to log in with a single set of credentials to access multiple applications a...
Zero Trust
A security model that requires strict identity verification for every person and device attempting to access resources, ...
Least Privilege
The principle of giving users, processes, and systems only the minimum levels of access needed to perform their job func...
Firewall
A network security system that monitors and controls incoming and outgoing network traffic based on predetermined securi...
These certifications also cover topics related to Information Security Program:
Security Principles — 15% of exam
Security Principles — 26% of exam
Security Operations & Administration — 16% of exam
Security Architecture — 29% of exam
Security & Risk Management — 16% of exam
Information Systems Auditing Process — 21% of exam