100% Free ISO 27001 ISO-IEC-27001-Lead-Implementer Dumps PDF Demo Cert Guide Cover [Q19-Q39]

Share

100% Free ISO 27001 ISO-IEC-27001-Lead-Implementer Dumps PDF Demo Cert Guide Cover

PDF Exam Material 2021 Realistic ISO-IEC-27001-Lead-Implementer Dumps Questions 

NEW QUESTION 19
You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventoryof threats and risks.
What is the relation between a threat, risk and risk analysis?

  • A. A risk analysis is used to clarify which threats are relevant and what risks they involve.
  • B. A risk analysis identifies threats from the known risks.
  • C. A riskanalysis is used to remove the risk of a threat.
  • D. Risk analyses help to find a balance between threats and risks.

Answer: A

 

NEW QUESTION 20
Select the controls that correspond to thedomain "9. ACCESS CONTROL" of ISO / 27002 (Choose three)

  • A. Return of assets
  • B. Withdrawal or adaptation of access rights
  • C. Restriction of access to information
  • D. Management of access rights with special privileges

Answer: A,B,C

 

NEW QUESTION 21
You have juststarted working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?

  • A. A code of conduct helps to prevent the misuse of IT facilities.
  • B. A code of conduct prevents a virus outbreak.
  • C. A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.
  • D. A code of conduct is alegal obligation that organizations have to meet.

Answer: A

 

NEW QUESTION 22
It is allowed that employees and contractors are provided with an anonymous reporting channel to report violations of information security policies or procedures ("whistle blowing")

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 23
Who is authorized to change the classification of a document?

  • A. The manager of the owner of the document
  • B. The administrator of the document
  • C. The author of the document
  • D. The owner of the document

Answer: D

 

NEW QUESTION 24
Why is compliance important forthe reliability of the information?

  • A. By meeting the legislative requirements and theregulations of both the government and internal management, an organization shows that it manages its information in a sound manner.
  • B. Compliance is another word for reliability. So, if a company indicates that it is compliant, it means that the information is managed properly.
  • C. When an organization is compliant, it meets the requirements of privacy legislation and, in doing so, protects the reliability of its information.
  • D. When an organization employs a standard such as the ISO/IEC 27002 and uses it everywhere, it is compliant and thereforeit guarantees the reliability of its information.

Answer: A

 

NEW QUESTION 25
What is an example of a security incident?

  • A. You cannot set the correct fonts in your word processing software.
  • B. The lighting in the department no longer works.
  • C. A file is saved under an incorrect name.
  • D. A member of staff loses a laptop.

Answer: D

 

NEW QUESTION 26
Which is a legislative or regulatory act related to information security that can be imposed upon all organizations?

  • A. ISO/IEC 27002:2005
  • B. Intellectual Property Rights
  • C. ISO/IEC 27001:2005
  • D. Personal data protection legislation

Answer: D

 

NEW QUESTION 27
Prior to employment, _________ as well as terms & conditions of employment are included as controls in ISO
27002 to ensure that employees and contractors understand their responsibilities and are suitable for the roles for which they are considered.

  • A. controlling
  • B. authorizing
  • C. screening
  • D. flexing

Answer: C

 

NEW QUESTION 28
What is the greatest risk for an organization ifno information security policy has been defined?

  • A. Too many measures areimplemented.
  • B. If everyone works with the same account, it is impossible to find out who worked on what.
  • C. It is not possible for an organization to implement information security in a consistent manner.
  • D. Information security activities are carried out by only a few people.

Answer: C

 

NEW QUESTION 29
What sort of security does a Public Key Infrastructure (PKI) offer?

  • A. Having a PKI shows customers that a web-based business is secure.
  • B. It provides digital certificates that can be used to digitally signdocuments. Such signatures irrefutably determine from whom a document was sent.
  • C. By providing agreements, procedures and an organization structure, a PKI defines which person or which system belongs to which specific public key.
  • D. A PKI ensures that backups of company data are made on a regular basis.

Answer: D

 

NEW QUESTION 30
Which of the following measures is a preventive measure?

  • A. Putting sensitive information in a safe
  • B. Classifying a risk as acceptable because the cost of addressing the threat is higher than the value of the information at risk
  • C. Installing a logging system that enables changes in a system to be recognized
  • D. Shutting down all internet traffic after a hacker has gained access to thecompany systems

Answer: A

 

NEW QUESTION 31
What should be used to protect data on removable media ifdata confidentiality or integrity are important considerations?

  • A. a password
  • B. cryptographic techniques
  • C. logging
  • D. backup on another removable medium

Answer: B

 

NEW QUESTION 32
A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the company's staff. Which kind of security measure could have prevented this?

  • A. A technical security measure
  • B. physical security measure
  • C. An organizational security measure

Answer: B

 

NEW QUESTION 33
How many domains does ISO / IEC 27002: 2013 have?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B

 

NEW QUESTION 34
You apply for a position in another company and get the job. Along with your contract, you are asked to sign a code of conduct. What is a code of conduct?

  • A. A code of conduct is a standard part of a labor contract.
  • B. A code ofconduct specifies how employees are expected to conduct themselves and is the same for all companies.
  • C. A code of conduct differs from company to company and specifies, among other things, the rules of behavior with regard to the usage of information systems.

Answer: C

 

NEW QUESTION 35
We can acquire and supply information in various ways. The value of the information depends on whether it is reliable. What are the reliability aspects of information?

  • A. Availability, Integrity and Completeness
  • B. Availability, Integrity and Confidentiality
  • C. Timeliness, Accuracy and Completeness
  • D. Availability, Information Value and Confidentiality

Answer: B

 

NEW QUESTION 36
You are a consultant and areregularly hired by the Ministry of Defense to perform analysis. Since the assignments are irregular, you outsource the administration of your business to temporary workers. You don't want the temporary workers to have access to your reports.
Which reliability aspect of the information in your reports must you protect?

  • A. Confidentiality
  • B. Availability
  • C. Integrity

Answer: A

 

NEW QUESTION 37
Logging in to a computer system is an access-granting process consisting of three steps: identification, authentication and authorization. What occurs during the first step of this process: identification?

  • A. The first step consists of comparing the password with the registered password.
  • B. The first step consists of granting access to the information to which the user is authorized.
  • C. The first step consists of checking if the user appears on the list of authorized users.
  • D. Thefirst step consists of checking if the user is using the correct certificate.

Answer: C

 

NEW QUESTION 38
Peter works at the company Midwest Insurance. His manager, Linda, asks him to send the terms and conditions for a life insurance policy to Rachel, a client. Who determines the value of the information in the insurance terms and conditions document?

  • A. The recipient, Rachel
  • B. The person who drafted the insurance terms and conditions
  • C. The sender, Peter
  • D. The manager, Linda

Answer: A

 

NEW QUESTION 39
......

Updated PECB ISO-IEC-27001-Lead-Implementer Dumps – PDF & Online Engine: https://www.actualtestsit.com/PECB/ISO-IEC-27001-Lead-Implementer-exam-prep-dumps.html

ISO-IEC-27001-Lead-Implementer.pdf - Questions Answers PDF Sample Questions Reliable: https://drive.google.com/open?id=128leE3kRwi6VHH9-Y-Jmyf41459aXT7M