
[Jan 17, 2022] Pass ISO 27001 ISO-IEC-27001-Lead-Auditor Exam With 99 Questions
Ultimate Guide to Prepare Free PECB ISO-IEC-27001-Lead-Auditor Exam Questions & Answer
NEW QUESTION 19
An employee caught temporarily storing an MP3 file in his workstation will not receive an IR.
- A. True
- B. False
Answer: B
NEW QUESTION 20
-------------------------is an asset like other important business assets has value to an organization and consequently needs to be protected.
- A. Information
- B. Security
- C. Data
- D. Infrastructure
Answer: A
NEW QUESTION 21
What type of compliancy standard, regulation or legislation provides a code of practice for information security?
- A. Personal data protection act
- B. ISO/IEC 27002
- C. Computer criminality act
- D. IT Service Management
Answer: B
NEW QUESTION 22
Which of the following does an Asset Register contain? (Choose two)
- A. Asset Type
- B. Asset Owner
- C. Process ID
- D. Asset Modifier
Answer: A,B
NEW QUESTION 23
What is the goal of classification of information?
- A. Structuring information according to its sensitivity
- B. To create a manual about how to handle mobile devices
- C. Applying labels making the information easier to recognize
Answer: A
NEW QUESTION 24
The following are the guidelines to protect your password, except:
- A. Change a temporary password on first log-on
- B. Don't use the same password for various company system security access
- C. Do not share passwords with anyone
- D. For easy recall, use the same password for company and personal accounts
Answer: C,D
NEW QUESTION 25
Which of the following is a preventive security measure?
- A. Shutting down the Internet connection after an attack
- B. Installing logging and monitoring software
- C. Storing sensitive information in a data save
Answer: C
NEW QUESTION 26
Cabling Security is associated with Power, telecommunication and network cabling carrying information are protected from interception and damage.
- A. True
- B. False
Answer: A
NEW QUESTION 27
Often, people do not pick up their prints from a shared printer. How can this affect the confidentiality of information?
- A. Integrity cannot be guaranteed
- B. Availability cannot be guaranteed
- C. Confidentiality cannot be guaranteed
- D. Authenticity cannot be guaranteed
Answer: C
NEW QUESTION 28
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.
- A. True
- B. False
Answer: A
NEW QUESTION 29
After a devastating office fire, all staff are moved to other branches of the company. At what moment in the incident management process is this measure effectuated?
- A. Between detection and classification
- B. Between incident and damage
- C. Between recovery and normal operations
- D. Between classification and escalation
Answer: B
NEW QUESTION 30
You receive an E-mail from some unknown person claiming to be representative of your bank and asking for your account number and password so that they can fix your account. Such an attempt of social engineering is called
- A. Phishing
- B. Mountaineering
- C. Spoofing
- D. Shoulder Surfing
Answer: A
NEW QUESTION 31
Which department maintain's contacts with law enforcement authorities, regulatory bodies, information service providers and telecommunications service providers depending on the service required.
- A. MRO
- B. COO
- C. CISO
- D. CSM
Answer: C
NEW QUESTION 32
Which of the following is a possible event that can have a disruptive effect on the reliability of information?
- A. Dependency
- B. Threat
- C. Vulnerability
- D. Risk
Answer: B
NEW QUESTION 33
Below is Purpose of "Integrity", which is one of the Basic Components of Information Security
- A. the property that information is not made available or disclosed to unauthorized individuals
- B. the property of being accessible and usable upon demand by an authorized entity.
- C. the property of safeguarding the accuracy and completeness of assets.
- D. the property that information is not made available or disclosed to unauthorized individuals
Answer: C
NEW QUESTION 34
A hacker gains access to a webserver and can view a file on the server containing credit card numbers.
Which of the Confidentiality, Integrity, Availability (CIA) principles of the credit card file are violated?
- A. Confidentiality
- B. Availability
- C. Integrity
- D. Compliance
Answer: A
NEW QUESTION 35
Which of the following factors does NOT contribute to the value of data for an organisation?
- A. The indispensability of data
- B. The content of data
- C. The correctness of data
- D. The importance of data for processes
Answer: B
NEW QUESTION 36
There is a network printer in the hallway of the company where you work. Many employees don't pick up their printouts immediately and leave them on the printer.
What are the consequences of this to the reliability of the information?
- A. The confidentiality of the information is no longer guaranteed.
- B. The Security of the information is no longer guaranteed.
- C. The integrity of the information is no longer guaranteed.
- D. The availability of the information is no longer guaranteed.
Answer: D
NEW QUESTION 37
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?
- A. a logical security measure
- B. a corrective security measure
- C. a repressive security measure
- D. a physical security measure
Answer: D
NEW QUESTION 38
In what part of the process to grant access to a system does the user present a token?
- A. Verification
- B. Authentication
- C. Identification
- D. Authorisation
Answer: C
NEW QUESTION 39
CEO sends a mail giving his views on the status of the company and the company's future strategy and the CEO's vision and the employee's part in it. The mail should be classified as
- A. Internal Mail
- B. Restricted Mail
- C. Public Mail
- D. Confidential Mail
Answer: A
NEW QUESTION 40
A planning process that introduced the concept of planning as a cycle that forms the basis for continuous improvement is called:
- A. plan, do, check, act.
- B. planning for continuous improvement.
- C. RACI Matrix
- D. time based planning.
Answer: A
NEW QUESTION 41
What is the standard definition of ISMS?
- A. A project-based approach to achieve business objectives for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization's information security
- B. Is an information security systematic approach to achieve business objectives for implementation, establishing, reviewing,operating and maintaining organization's reputation.
- C. A systematic approach for establishing, implementing, operating,monitoring, reviewing, maintaining and improving an organization's information security to achieve business objectives.
- D. A company wide business objectives to achieve information security awareness for establishing, implementing, operating, monitoring, reviewing, maintaining and improving
Answer: C
NEW QUESTION 42
......
PECB Certified ISO/IEC 27001 Lead Auditor exam Practice Tests 2022 | Pass ISO-IEC-27001-Lead-Auditor with confidence!: https://drive.google.com/open?id=1o4314NgyxJP-F1tJpLqAviKxkEZXwRUY
Pass ISO-IEC-27001-Lead-Auditor Tests Engine pdf - All Free Dumps: https://www.exams4sures.com/PECB/ISO-IEC-27001-Lead-Auditor-practice-exam-dumps.html