
Latest [Oct 22, 2021] 100% Passing Guarantee - Brilliant ISO-IEC-27001-Lead-Implementer Exam Questions PDF
ISO-IEC-27001-Lead-Implementer Certification – Valid Exam Dumps Questions Study Guide! (Updated 50 Questions)
NEW QUESTION 11
It is allowed that employees and contractors are provided with an anonymous reporting channel to report violations of information security policies or procedures ("whistle blowing")
- A. True
- B. False
Answer: A
NEW QUESTION 12
An employee in the administrative department of Smiths Consultants Inc. finds out that the expiry date of a contract with one of theclients is earlier than the start date. What type of measure could prevent this error?
- A. Organizational measure
- B. Availability measure
- C. Technical measure
- D. Integrity measure
Answer: C
NEW QUESTION 13
Peter works at the company Midwest Insurance. His manager, Linda, asks him to send the terms and conditions for a life insurance policy to Rachel, a client. Who determines the value of the information in the insurance terms and conditions document?
- A. The recipient, Rachel
- B. The person who drafted the insurance terms and conditions
- C. The sender, Peter
- D. The manager, Linda
Answer: A
NEW QUESTION 14
How many domains does ISO / IEC 27002: 2013 have?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: B
NEW QUESTION 15
What is the greatest risk for an organization ifno information security policy has been defined?
- A. Too many measures areimplemented.
- B. If everyone works with the same account, it is impossible to find out who worked on what.
- C. It is not possible for an organization to implement information security in a consistent manner.
- D. Information security activities are carried out by only a few people.
Answer: C
NEW QUESTION 16
Responsibilities for information security in projects should be defined and allocated to:
- A. the project manager
- B. the InfoSec officer
- C. the owner of the involved asset
- D. specified roles defined in the used project management method of the organization
Answer: D
NEW QUESTION 17
You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventoryof threats and risks.
What is the relation between a threat, risk and risk analysis?
- A. A risk analysis is used to clarify which threats are relevant and what risks they involve.
- B. A risk analysis identifies threats from the known risks.
- C. A riskanalysis is used to remove the risk of a threat.
- D. Risk analyses help to find a balance between threats and risks.
Answer: A
NEW QUESTION 18
Physical labels and ________ are two common forms of labeling which are mentioned in ISO 27002.
- A. metadata
- B. teradata
- C. bridge
Answer: A
NEW QUESTION 19
What is the objective of classifying information?
- A. Creating alabel that indicates how confidential the information is
- B. Defining different levels of sensitivity into which information may be arranged
- C. Authorizing the use of an information system
- D. Displaying on the document who is permitted access
Answer: B
NEW QUESTION 20
Which of these control objectives are NOT in the domain "12.OPERATIONAL SAFETY"?
- A. Technical vulnerability management
- B. Protection against malicious code
- C. Test data
- D. Redundancies
Answer: D
NEW QUESTION 21
You have juststarted working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?
- A. A code of conduct helps to prevent the misuse of IT facilities.
- B. A code of conduct prevents a virus outbreak.
- C. A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.
- D. A code of conduct is alegal obligation that organizations have to meet.
Answer: A
NEW QUESTION 22
Which of the following measures is a correctivemeasure?
- A. Making a backup of the data that has been created or altered that day
- B. Installing a virus scanner in an information system
- C. Incorporating an Intrusion Detection System (IDS) in the design of a computer center
- D. Restoring a backup of the correct database after a corrupt copy of the database was written over the original
Answer: D
NEW QUESTION 23
Susan sends an email to Paul. Who determines the meaning and the value of information in this email?
- A. Paul and Susan, the sender and the recipient of the information.
- B. Paul, therecipient of the information.
- C. Susan, the sender of the information.
Answer: B
NEW QUESTION 24
What is an example of a non-human threat to the physical environment?
- A. Fraudulent transaction
- B. Storm
- C. Corrupted file
- D. Virus
Answer: B
NEW QUESTION 25
Of the following, which is the best organization or set of organizations to contribute to compliance?
- A. IT only
- B. IT and legal
- C. IT and management
- D. IT,business management, HR and legal
Answer: D
NEW QUESTION 26
Companies use 27002 for compliance for which of the following reasons:
- A. Compliance with ISO 27002 is sufficient to comply with all regulations
- B. A structured program that helps with security and compliance
- C. Explicit requirements for all regulations
Answer: B
NEW QUESTION 27
You apply for a position in another company and get the job. Along with your contract, you are asked to sign a code of conduct. What is a code of conduct?
- A. A code of conduct is a standard part of a labor contract.
- B. A code ofconduct specifies how employees are expected to conduct themselves and is the same for all companies.
- C. A code of conduct differs from company to company and specifies, among other things, the rules of behavior with regard to the usage of information systems.
Answer: C
NEW QUESTION 28
Select the controls that correspond to thedomain "9. ACCESS CONTROL" of ISO / 27002 (Choose three)
- A. Return of assets
- B. Withdrawal or adaptation of access rights
- C. Restriction of access to information
- D. Management of access rights with special privileges
Answer: A,B,C
NEW QUESTION 29
What sort of security does a Public Key Infrastructure (PKI) offer?
- A. Having a PKI shows customers that a web-based business is secure.
- B. It provides digital certificates that can be used to digitally signdocuments. Such signatures irrefutably determine from whom a document was sent.
- C. By providing agreements, procedures and an organization structure, a PKI defines which person or which system belongs to which specific public key.
- D. A PKI ensures that backups of company data are made on a regular basis.
Answer: D
NEW QUESTION 30
The identified owner of an asset is always an individual
- A. True
- B. False
Answer: B
NEW QUESTION 31
......
ISO-IEC-27001-Lead-Implementer are Available for Instant Access: https://www.testpassed.com/ISO-IEC-27001-Lead-Implementer-still-valid-exam.html
ISO-IEC-27001-Lead-Implementer Dumps 2021 - New PECB ISO-IEC-27001-Lead-Implementer Exam Questions: https://drive.google.com/open?id=1HAuEkYkWrtPjMMzMFRzG0cF7txWzl23_