45Information Security Manager Interview Questions & Answers
1.Can you tell me what your home network consists of?
2.What is a professional achievement that you are proud of?
3.How would you use traceroute to locate a network communication issue?
4.What are the security-related benefits of using SSH on a Windows PC?
5.Can you discuss the differences between symmetric and asymmetric encryption?
6.Do you believe SSL provides adequate data encryption?
7.What is the purpose of a POST code, and where can you locate it for a specific system?
8.What are some of the differences between a black hat and a white hat testing?
9.How can you reset a password-protected BIOS configuration?
10.What is the purpose of XSS, and when do you use it?
11.What tools can you use to log in to Active Directory from a Linux system?
12.What are some of the ways to authenticate a user?
13.How do you determine if a remote server is running IIS or Apache?
14.Can you describe the two main types of data protection?
15.Would you consider it an issue if you detected that a user had logged in as root to perform basic functions? If so, what actions would you take to prevent this?
16.What steps do you take to protect your home wireless router from unauthorized use?
17.How can you configure a network to allow only a single node to access the network from a particular port?
18.How can you install an OS on a remote headless system?
19.What does CIA stand for, and how is it used in the context of information security?
20.Can you discuss the differences between a HIDS and a NIDS?
21.How would you address an active problem on the network that is out of your area of responsibility?
22.As a manager, do you have the authorization to allow a senior executive to use their home laptop in the office?
23.How does a vulnerability differ from an exploit?
24.Which do you consider worse, a false negative or a false positive firewall detection?
25.Can you compare information protection and information assurance?
26.What actions are needed to lock down a mobile device?
27.Are you comfortable working with open-source software?
28.What is your experience with hacktivist groups such as Anonymous?
29.Please describe a three-way handshake and discuss how it is used to create a denial of service (DOS) attack.
30.How would you go about breaking into a database-based website?
31.Can you describe a time you were asked to do something you had never done before? How did you react?
32.Please describe a situation where you needed to adapt a process, procedure, or technology differently from how you usually did things.
33.Can you recall a time you were assigned a task that wasn't a part of your job description. How did you handle this, and what was the outcome?
34.Tell me about an aspect of your profession that makes you the most satisfied, energized, and productive at work.
35.Why did you choose to interview with our organization rather than with others in our industry?
36.What's a misconception your coworkers have about you, and why do you believe they feel this way?
37.What's the most interesting thing about you that I didn't see on your resume?
38.Can you give me an example of a time you had to work with someone who was difficult to get along with? How did you handle the situation?
39.Please tell me about a time when something major didn't go according to plan at work.
40.Describe a situation where you needed to persuade someone about an idea or process.
41.Can you give me an example of a time you led by example and describe what you did and how your team reacted?
42.Tell me about a difficult decision you had to make in one of your previous roles.
43.Can you recall a time your manager was unavailable when a situation arose that demanded an immediate resolution? How did you react?
44.What motivated you to make a move from your current role?
45.When was the last occasion you asked for direct feedback from your manager?