
Assume PECB ISO-IEC-27001-Lead-Implementer Dumps PDF Are going to be The Best Score
ISO 27001 ISO-IEC-27001-Lead-Implementer Exam and Certification Test Engine
NEW QUESTION 24
A non-human threat for computer systems is a flood. In which situation is a flood always a relevant threat?
- A. When the organization is located near a river.
- B. When computer systems are kept in a cellar below ground level.
- C. If the riskanalysis has not been carried out.
- D. When the computer systems are not insured.
Answer: B
NEW QUESTION 25
Which is a legislative or regulatory act related to information security that can be imposed upon all organizations?
- A. Personal data protection legislation
- B. Intellectual Property Rights
- C. ISO/IEC 27002:2005
- D. ISO/IEC 27001:2005
Answer: A
NEW QUESTION 26
Why is compliance important forthe reliability of the information?
- A. When an organization is compliant, it meets the requirements of privacy legislation and, in doing so, protects the reliability of its information.
- B. Compliance is another word for reliability. So, if a company indicates that it is compliant, it means that the information is managed properly.
- C. By meeting the legislative requirements and theregulations of both the government and internal management, an organization shows that it manages its information in a sound manner.
- D. When an organization employs a standard such as the ISO/IEC 27002 and uses it everywhere, it is compliant and thereforeit guarantees the reliability of its information.
Answer: C
NEW QUESTION 27
You are a consultant and areregularly hired by the Ministry of Defense to perform analysis. Since the assignments are irregular, you outsource the administration of your business to temporary workers. You don't want the temporary workers to have access to your reports.
Which reliability aspect of the information in your reports must you protect?
- A. Confidentiality
- B. Availability
- C. Integrity
Answer: A
NEW QUESTION 28
What should be used to protect data on removable media ifdata confidentiality or integrity are important considerations?
- A. backup on another removable medium
- B. a password
- C. cryptographic techniques
- D. logging
Answer: C
NEW QUESTION 29
What does the Information Security Policy describe?
- A. which InfoSec-controls have been selected and taken
- B. how the InfoSec-objectives will be reached
- C. what the implementation-planning of the information security management system is
- D. which Information Security-procedures are selected
Answer: B
NEW QUESTION 30
What is the ISO / IEC 27002 standard?
- A. It is a guide for the development and use of applicable metrics and measurement techniques to determine the effectiveness of an ISMS and the controls or groups of controls implemented according to ISO / IEC 27001.
- B. It is a guide that focuses on the critical aspects necessary for the successful design and implementation of an ISMS in accordance with ISO / IEC 27001
- C. It is a guide of good practices that describes the controlobjectives and recommended controls regarding information security.
Answer: C
NEW QUESTION 31
Prior to employment, _________ as well as terms & conditions of employment are included as controls in ISO
27002 to ensure that employees and contractors understand their responsibilities and are suitable for the roles for which they are considered.
- A. authorizing
- B. screening
- C. controlling
- D. flexing
Answer: B
NEW QUESTION 32
Who is authorized to change the classification of a document?
- A. The owner of the document
- B. The manager of the owner of the document
- C. The author of the document
- D. The administrator of the document
Answer: A
NEW QUESTION 33
One of the ways Internet of Things (IoT) devices can communicate with each other (or 'the outside world') is using a so-called short-range radio protocol. Which kind of short-range radio protocol makes it possible to use your phone as a credit card?
- A. Near Field Communication (NFC)
- B. The 4G protocol
- C. Bluetooth
- D. Radio Frequency Identification (RFID)
Answer: A
NEW QUESTION 34
How many domains does ISO / IEC 27002: 2013 have?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: C
NEW QUESTION 35
Which of the following measures is a preventive measure?
- A. Shutting down all internet traffic after a hacker has gained access to thecompany systems
- B. Putting sensitive information in a safe
- C. Installing a logging system that enables changes in a system to be recognized
- D. Classifying a risk as acceptable because the cost of addressing the threat is higher than the value of the information at risk
Answer: B
NEW QUESTION 36
You apply for a position in another company and get the job. Along with your contract, you are asked to sign a code of conduct. What is a code of conduct?
- A. A code of conduct is a standard part of a labor contract.
- B. A code of conduct differs from company to company and specifies, among other things, the rules of behavior with regard to the usage of information systems.
- C. A code ofconduct specifies how employees are expected to conduct themselves and is the same for all companies.
Answer: B
NEW QUESTION 37
Select risk control activities for domain "10. Encryption" of ISO / 27002: 2013 (Choose two)
- A. Cryptographic Controls Use Policy
- B. Key management
- C. Work in safe areas
- D. Physical security perimeter
Answer: A,B
NEW QUESTION 38
In the context ofcontact with special interest groups, any information-sharing agreements should identify requirements for the protection of _________ information.
- A. Confidential
- B. Availability
- C. Authentic
- D. Authorization
Answer: A
NEW QUESTION 39
Select the controls that correspond to thedomain "9. ACCESS CONTROL" of ISO / 27002 (Choose three)
- A. Restriction of access to information
- B. Management of access rights with special privileges
- C. Withdrawal or adaptation of access rights
- D. Return of assets
Answer: A,C,D
NEW QUESTION 40
You have juststarted working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?
- A. A code of conduct is alegal obligation that organizations have to meet.
- B. A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.
- C. A code of conduct prevents a virus outbreak.
- D. A code of conduct helps to prevent the misuse of IT facilities.
Answer: D
NEW QUESTION 41
What is an example of a security incident?
- A. A file is saved under an incorrect name.
- B. You cannot set the correct fonts in your word processing software.
- C. The lighting in the department no longer works.
- D. A member of staff loses a laptop.
Answer: D
NEW QUESTION 42
......
Use ISO-IEC-27001-Lead-Implementer Exam Dumps (2021 PDF Dumps) To Have Reliable ISO-IEC-27001-Lead-Implementer Test Engine: https://www.testbraindump.com/ISO-IEC-27001-Lead-Implementer-exam-prep.html
ISO-IEC-27001-Lead-Implementer PDF Recently Updated Questions Dumps to Improve Exam Score: https://drive.google.com/open?id=1TPDsSB_5Kn4FHqkymFMX_pZxb5w1Bpn6
