Labour Day Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: suredis

GAQM ISO-IEC-LI ISO / IEC 27002 - Lead Implementer Exam Practice Test

Page: 1 / 5
Total 50 questions

ISO / IEC 27002 - Lead Implementer Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$42  $119.99

PDF Study Guide

  • Product Type: PDF Study Guide
$36.75  $104.99
Question 1

Peter works at the company Midwest Insurance. His manager, Linda, asks him to send the terms and conditions for a life insurance policy to Rachel, a client. Who determines the value of the information in the insurance terms and conditions document?

Options:

A.

The recipient, Rachel

B.

The person who drafted the insurance terms and conditions

C.

The manager, Linda

D.

The sender, Peter

Question 2

What does the Information Security Policy describe?

Options:

A.

how the InfoSec-objectives will be reached

B.

which InfoSec-controls have been selected and taken

C.

what the implementation-planning of the information security management system is

D.

which Information Security-procedures are selected

Question 3

What are the data protection principles set out in the GDPR?

Options:

A.

Purpose limitation, proportionality, availability, data minimisation

B.

Purpose limitation, proportionality, data minimisation, transparency

C.

Target group, proportionality, transparency, data minimisation

D.

Purpose limitation, pudicity, transparency, data minimisation

Question 4

What do employees need to know to report a security incident?

Options:

A.

How to report an incident and to whom.

B.

Whether the incident has occurred before and what was the resulting damage.

C.

The measures that should have been taken to prevent the incident in the first place.

D.

Who is responsible for the incident and whether it was intentional.

Question 5

Responsibilities for information security in projects should be defined and allocated to:

Options:

A.

the project manager

B.

specified roles defined in the used project management method of the organization

C.

the InfoSec officer

D.

the owner of the involved asset

Question 6

True or False: Organizations allowing teleworking activities, the physical security of the building and the local environment of the teleworking site should be considered

Options:

A.

True

B.

False

Question 7

What sort of security does a Public Key Infrastructure (PKI) offer?

Options:

A.

It provides digital certificates that can be used to digitally sign documents. Such signatures irrefutably determine from whom a document was sent.

B.

Having a PKI shows customers that a web-based business is secure.

C.

By providing agreements, procedures and an organization structure, a PKI defines which person or which system belongs to which specific public key.

D.

A PKI ensures that backups of company data are made on a regular basis.

Page: 1 / 5
Total 50 questions