Information security manager Interview Questions
212
Information Security Manager interview questions shared by candidates
If you had an unlimited budget what controls would you implement?
2 Answers↳
Camera’s though out the building not only for security of the building but for the safety of my employees. Education for active shooter and practice these policies. Sexual harassment as well as work place violence. A security monitoring room preferably off premises. Quality Radio’s as there is a lot of dead spots for communication in a building of that size as well as material building construction equipment. Face to face relief. Check point location so you can verify that your security officer have checked all required locations Background checks on all new employees. Periodic drug testing. Can be done by the last 4 of there social security #. There is no place for security officers who are not alert and observant. Less
↳
I would also make sure the outside of the building is well lit and roving patrol making sure when employees safely leave the building and get to there cars safety Less

Common behavioral and technical questions for the position.
1 Answers↳
Answer based on your behavior and knowledge.

Standard basic (and completely useless questions), like what I am doing when I get angry. Test sheet with a very basic problem, like you get an incident ticket, you are 3rd level support, 1st/2nd level found nothing, what do you do?
1 Answers↳
Professional answer you will hear on any management seminar. Conflict handling techniques, ITIL based service management approach. Less


What are the differences between OpEx and CapEx?
1 Answers↳
Operational Expenses and Capital Expenditures

How would you determine the work force required to run a Vulnerability Assessment program for a customer
1 Answers↳
Expectation is you question back asking questions like - What is the scope? how many end points ? Internal only or external scan as well ? Are we supposed to just the scan and provide the report or we need to follow up remediation etc. Less

How would I develop and implement a fully certified ISMS
1 Answers↳
I explained the full ISO27001 development and implementation lifecycle


Who is the CEO, CIO, and CISO
1 Answers↳
Luckily i looked it up and had it written down. This question was asked by several people in the various interviews. I asked if they minded if i looked at my notes cause I couldn't recall their names fully. They were impressed that i had even looked it up. I highly recommend researching the company and if there is a letter to the share holders from the previous quarter, read it. Less