[2021] ISO-IEC-27001-Lead-Implementer PDF Questions - Perfect Prospect To Go With Exam4Free Practice Exam PECB ISO-IEC-27001-Lead-Implementer Pdf Questions - Outstanding Practice To your Exam NEW QUESTION 17 What should be used to protect data on removable media ifdata confidentiality or integrity are important considerations? A. backup on another removable medium B. logging C. cryptographic techniques [...]

[2021] ISO-IEC-27001-Lead-Implementer PDF Questions - Perfect Prospect To Go With Exam4Free Practice Exam [Q17-Q38]

Share

[2021] ISO-IEC-27001-Lead-Implementer PDF Questions - Perfect Prospect To Go With Exam4Free Practice Exam

PECB ISO-IEC-27001-Lead-Implementer Pdf Questions - Outstanding Practice To your Exam

NEW QUESTION 17
What should be used to protect data on removable media ifdata confidentiality or integrity are important considerations?

  • A. backup on another removable medium
  • B. logging
  • C. cryptographic techniques
  • D. a password

Answer: C

 

NEW QUESTION 18
ISO 27002 provides guidance in the following area

  • A. Framework for an overall security andcompliance program
  • B. Detailed lists of required policies and procedures
  • C. Information handling recommendations
  • D. PCI environment scoping

Answer: A

 

NEW QUESTION 19
You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventoryof threats and risks.
What is the relation between a threat, risk and risk analysis?

  • A. A riskanalysis is used to remove the risk of a threat.
  • B. A risk analysis is used to clarify which threats are relevant and what risks they involve.
  • C. A risk analysis identifies threats from the known risks.
  • D. Risk analyses help to find a balance between threats and risks.

Answer: B

 

NEW QUESTION 20
Who is authorized to change the classification of a document?

  • A. The owner of the document
  • B. The manager of the owner of the document
  • C. The administrator of the document
  • D. The author of the document

Answer: A

 

NEW QUESTION 21
One of the ways Internet of Things (IoT) devices can communicate with each other (or 'the outside world') is using a so-called short-range radio protocol. Which kind of short-range radio protocol makes it possible to use your phone as a credit card?

  • A. Radio Frequency Identification (RFID)
  • B. The 4G protocol
  • C. Bluetooth
  • D. Near Field Communication (NFC)

Answer: D

 

NEW QUESTION 22
It is allowed that employees and contractors are provided with an anonymous reporting channel to report violations of information security policies or procedures ("whistle blowing")

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 23
You apply for a position in another company and get the job. Along with your contract, you are asked to sign a code of conduct. What is a code of conduct?

  • A. A code of conduct is a standard part of a labor contract.
  • B. A code of conduct differs from company to company and specifies, among other things, the rules of behavior with regard to the usage of information systems.
  • C. A code ofconduct specifies how employees are expected to conduct themselves and is the same for all companies.

Answer: B

 

NEW QUESTION 24
Which of these reliability aspects is "completeness" a part of?

  • A. Availability
  • B. Integrity
  • C. Exclusivity
  • D. Confidentiality

Answer: B

 

NEW QUESTION 25
A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the company's staff. Which kind of security measure could have prevented this?

  • A. A technical security measure
  • B. physical security measure
  • C. An organizational security measure

Answer: B

 

NEW QUESTION 26
Midwest Insurance grades the monthly report of all claimed losses per insured as confidential. What is accomplished if all other reports from this insurance office are also assigned the appropriate grading?

  • A. Everyone can easily see how sensitive the reports' contents are by consulting the grading label.
  • B. A determination can be made as to which report should be printed firstand which ones can wait a little longer.
  • C. The costs for automating are easier to charge to the responsible departments.
  • D. Reports can be developed more easily and with fewer errors.

Answer: A

 

NEW QUESTION 27
The identified owner of an asset is always an individual

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 28
What does the Information Security Policy describe?

  • A. which InfoSec-controls have been selected and taken
  • B. how the InfoSec-objectives will be reached
  • C. which Information Security-procedures are selected
  • D. what the implementation-planning of the information security management system is

Answer: B

 

NEW QUESTION 29
A non-human threat for computer systems is a flood. In which situation is a flood always a relevant threat?

  • A. If the riskanalysis has not been carried out.
  • B. When the organization is located near a river.
  • C. When the computer systems are not insured.
  • D. When computer systems are kept in a cellar below ground level.

Answer: D

 

NEW QUESTION 30
What is an example of a non-human threat to the physical environment?

  • A. Storm
  • B. Corrupted file
  • C. Fraudulent transaction
  • D. Virus

Answer: A

 

NEW QUESTION 31
In the context ofcontact with special interest groups, any information-sharing agreements should identify requirements for the protection of _________ information.

  • A. Authorization
  • B. Authentic
  • C. Availability
  • D. Confidential

Answer: D

 

NEW QUESTION 32
What is the objective of classifying information?

  • A. Displaying on the document who is permitted access
  • B. Creating alabel that indicates how confidential the information is
  • C. Defining different levels of sensitivity into which information may be arranged
  • D. Authorizing the use of an information system

Answer: C

 

NEW QUESTION 33
What is an example of a security incident?

  • A. The lighting in the department no longer works.
  • B. A file is saved under an incorrect name.
  • C. A member of staff loses a laptop.
  • D. You cannot set the correct fonts in your word processing software.

Answer: C

 

NEW QUESTION 34
Susan sends an email to Paul. Who determines the meaning and the value of information in this email?

  • A. Susan, the sender of the information.
  • B. Paul, therecipient of the information.
  • C. Paul and Susan, the sender and the recipient of the information.

Answer: B

 

NEW QUESTION 35
Of the following, which is the best organization or set of organizations to contribute to compliance?

  • A. IT only
  • B. IT and legal
  • C. IT,business management, HR and legal
  • D. IT and management

Answer: C

 

NEW QUESTION 36
You have juststarted working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?

  • A. A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.
  • B. A code of conduct prevents a virus outbreak.
  • C. A code of conduct is alegal obligation that organizations have to meet.
  • D. A code of conduct helps to prevent the misuse of IT facilities.

Answer: D

 

NEW QUESTION 37
......

Online Questions - Outstanding Practice To your ISO-IEC-27001-Lead-Implementer Exam: https://www.exam4free.com/ISO-IEC-27001-Lead-Implementer-valid-dumps.html

Practice To ISO-IEC-27001-Lead-Implementer - Exam4Free Remarkable Practice On your PECB Certified ISO/IEC 27001 Lead Implementer exam Exam: https://drive.google.com/open?id=1YClJhUs43oCK_eQJAvakMV6h8TlWVVMi