ISO-IEC-27001-Lead-Auditor Exam Dumps - Try Best ISO-IEC-27001-Lead-Auditor Exam Questions from Training Expert TrainingDump [Q34-Q53]

Share

ISO-IEC-27001-Lead-Auditor Exam Dumps - Try Best ISO-IEC-27001-Lead-Auditor Exam Questions from Training Expert TrainingDump

Practice Examples and Dumps & Tips for 2022 Latest ISO-IEC-27001-Lead-Auditor Valid Tests Dumps


PECB ISO-IEC-27001-Lead-Auditor Exam Syllabus Topics:

TopicDetails
Topic 1
  • Plan, conduct, and close an ISO
  • IEC 27001 compliance audit
  • Manage an ISO
  • IEC 27001 audit program
Topic 2
  • Evaluate the ISMS conformity to ISO
  • IEC 27001 requirements, in accordance with the fundamental audit concepts and principles
Topic 3
  • Explain the fundamental concepts and principles of an information security management system (ISMS) based on ISO
  • IEC 27001

 

NEW QUESTION 34
What is the goal of classification of information?

  • A. To create a manual about how to handle mobile devices
  • B. Structuring information according to its sensitivity
  • C. Applying labels making the information easier to recognize

Answer: B

 

NEW QUESTION 35
Phishing is what type of Information Security Incident?

  • A. Technical Vulnerabilities
  • B. Legal Incidents
  • C. Private Incidents
  • D. Cracker/Hacker Attacks

Answer: D

 

NEW QUESTION 36
A member of staff denies sending a particular message.
Which reliability aspect of information is in danger here?

  • A. confidentiality
  • B. availability
  • C. integrity
  • D. correctness

Answer: C

 

NEW QUESTION 37
What type of legislation requires a proper controlled purchase process?

  • A. Government information act
  • B. Computer criminality act
  • C. Personal data protection act
  • D. Intellectual property rights act

Answer: D

 

NEW QUESTION 38
In the event of an Information security incident, system users' roles and responsibilities are to be observed, except:

  • A. Make the information security incident details known to all employees
  • B. Preserve evidence if necessary
  • C. Report suspected or known incidents upon discovery through the Servicedesk
  • D. Cooperate with investigative personnel during investigation if needed

Answer: A

 

NEW QUESTION 39
Information has a number of reliability aspects. Reliability is constantly being threatened. Examples of threats are: a cable becomes loose, someone alters information by accident, data is used privately or is falsified.
Which of these examples is a threat to integrity?

  • A. a loose cable
  • B. accidental alteration of data
  • C. System restart
  • D. private use of data

Answer: B

 

NEW QUESTION 40
What is social engineering?

  • A. Creating a situation wherein a third party gains confidential information from you
  • B. The organization planning an activity for welfare of the neighborhood
  • C. A group planning for a social activity in the organization

Answer: A

 

NEW QUESTION 41
There was a fire in a branch of the company Midwest Insurance. The fire department quickly arrived at the scene and could extinguish the fire before it spread and burned down the entire premises. The server, however, was destroyed in the fire. The backup tapes kept in another room had melted and many other documents were lost for good.
What is an example of the indirect damage caused by this fire?

  • A. Water damage due to the fire extinguishers
  • B. Burned computer systems
  • C. Burned documents
  • D. Melted backup tapes

Answer: A

 

NEW QUESTION 42
Cabling Security is associated with Power, telecommunication and network cabling carrying information are protected from interception and damage.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 43
You are the lead auditor of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?

  • A. Risk neutral
  • B. Risk avoidance
  • C. Risk skipping
  • D. Risk bearing

Answer: D

 

NEW QUESTION 44
Information or data that are classified as ______ do not require labeling.

  • A. Internal
  • B. Confidential
  • C. Highly Confidential
  • D. Public

Answer: D

 

NEW QUESTION 45
All are prohibited in acceptable use of information assets, except:

  • A. Electronic chain letters
  • B. E-mail copies to non-essential readers
  • C. Company-wide e-mails with supervisor/TL permission.
  • D. Messages with very large attachments or to a large number ofrecipients.

Answer: C

 

NEW QUESTION 46
What is the standard definition of ISMS?

  • A. A systematic approach for establishing, implementing, operating,monitoring, reviewing, maintaining and improving an organization's information security to achieve business objectives.
  • B. A company wide business objectives to achieve information security awareness for establishing, implementing, operating, monitoring, reviewing, maintaining and improving
  • C. Is an information security systematic approach to achieve business objectives for implementation, establishing, reviewing,operating and maintaining organization's reputation.
  • D. A project-based approach to achieve business objectives for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization's information security

Answer: A

 

NEW QUESTION 47
You have a hard copy of a customer design document that you want to dispose off. What would you do

  • A. Throw it in any dustbin
  • B. Be environment friendly and reuse it for writing
  • C. Shred it using a shredder
  • D. Give it to the office boy to reuse it for other purposes

Answer: C

 

NEW QUESTION 48
Backup media is kept in the same secure area as the servers. What risk may the organisation be exposed to?

  • A. Unauthorised persons will have access to both the servers and backups
  • B. After a fire, the information systems cannot be restored
  • C. After a server crash, it will take extra time to bring it back up again
  • D. Responsibility for the backups is not defined well

Answer: B

 

NEW QUESTION 49
The following are purposes of Information Security, except:

  • A. Minimize Business Risk
  • B. Ensure Business Continuity
  • C. Maximize Return on Investment
  • D. Increase Business Assets

Answer: D

 

NEW QUESTION 50
Which of the following statements are correct for Clean Desk Policy?

  • A. Don't leave highly confidential items.
  • B. Don't leave confidential documents on your desk.
  • C. Don't leave laptops without cable lock.
  • D. Don't leave valuable items on your desk if you are not in your work area.

Answer: A,B,D

 

NEW QUESTION 51
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?

  • A. a repressive security measure
  • B. a logical security measure
  • C. a corrective security measure
  • D. a physical security measure

Answer: D

 

NEW QUESTION 52
Access Control System, CCTV and security guards are form of:

  • A. Compliance
  • B. Environment Security
  • C. Physical Security
  • D. Access Control

Answer: C

 

NEW QUESTION 53
......

Latest 100% Passing Guarantee - Brilliant ISO-IEC-27001-Lead-Auditor Exam Questions PDF: https://www.trainingdump.com/PECB/ISO-IEC-27001-Lead-Auditor-practice-exam-dumps.html

ISO-IEC-27001-Lead-Auditor Certification – Valid Exam Dumps Questions Study Guide: https://drive.google.com/open?id=1iPis9hB2G8_wwVcxsxSYZl95lVSeATZG

0
0
0
0