
[2021] Pass PECB ISO-IEC-27001-Lead-Auditor Exam Updated 99 Questions
Get 2021 Updated Free PECB ISO-IEC-27001-Lead-Auditor Exam Questions & Answer
NEW QUESTION 11
What type of compliancy standard, regulation or legislation provides a code of practice for information security?
- A. IT Service Management
- B. ISO/IEC 27002
- C. Personal data protection act
- D. Computer criminality act
Answer: B
NEW QUESTION 12
A member of staff denies sending a particular message.
Which reliability aspect of information is in danger here?
- A. integrity
- B. availability
- C. confidentiality
- D. correctness
Answer: A
NEW QUESTION 13
Which of the following statements are correct for Clean Desk Policy?
- A. Don't leave laptops without cable lock.
- B. Don't leave highly confidential items.
- C. Don't leave valuable items on your desk if you are not in your work area.
- D. Don't leave confidential documents on your desk.
Answer: B,C,D
NEW QUESTION 14
Which reliability aspect of information is compromised when a staff member denies having sent a message?
- A. Integrity
- B. Availability
- C. Confidentiality
- D. Correctness
Answer: A
NEW QUESTION 15
What is the goal of classification of information?
- A. Structuring information according to its sensitivity
- B. To create a manual about how to handle mobile devices
- C. Applying labels making the information easier to recognize
Answer: A
NEW QUESTION 16
All are prohibited in acceptable use of information assets, except:
- A. Electronic chain letters
- B. Company-wide e-mails with supervisor/TL permission.
- C. E-mail copies to non-essential readers
- D. Messages with very large attachments or to a large number ofrecipients.
Answer: B
NEW QUESTION 17
Which of the following is a possible event that can have a disruptive effect on the reliability of information?
- A. Vulnerability
- B. Risk
- C. Threat
- D. Dependency
Answer: C
NEW QUESTION 18
What is an example of a human threat?
- A. phishing
- B. a lightning strike
- C. fire
- D. thunderstrom
Answer: A
NEW QUESTION 19
What is the name of the system that guarantees the coherence of information security in the organization?
- A. Security regulations for special information for the government
- B. Rootkit
- C. Information Security Management System (ISMS)
- D. Information Technology Service Management (ITSM)
Answer: C
NEW QUESTION 20
What is the security management term for establishing whether someone's identity is correct?
- A. Identification
- B. Verification
- C. Authentication
- D. Authorisation
Answer: C
NEW QUESTION 21
Changes on project-managed applications or database should undergo the change control process as documented.
- A. True
- B. False
Answer: A
NEW QUESTION 22
You are the lead auditor of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?
- A. Risk bearing
- B. Risk neutral
- C. Risk avoidance
- D. Risk skipping
Answer: A
NEW QUESTION 23
A planning process that introduced the concept of planning as a cycle that forms the basis for continuous improvement is called:
- A. time based planning.
- B. plan, do, check, act.
- C. RACI Matrix
- D. planning for continuous improvement.
Answer: B
NEW QUESTION 24
Integrity of data means
- A. Accuracy and completeness of the data
- B. Data should be viewable at all times
- C. Data should be accessed by only the right people
Answer: A
NEW QUESTION 25
Which of the following is not a type of Information Security attack?
- A. Privacy Incidents
- B. Vehicular Incidents
- C. Legal Incidents
- D. Technical Vulnerabilities
Answer: B
NEW QUESTION 26
Information or data that are classified as ______ do not require labeling.
- A. Public
- B. Internal
- C. Highly Confidential
- D. Confidential
Answer: A
NEW QUESTION 27
You have a hard copy of a customer design document that you want to dispose off. What would you do
- A. Shred it using a shredder
- B. Be environment friendly and reuse it for writing
- C. Give it to the office boy to reuse it for other purposes
- D. Throw it in any dustbin
Answer: A
NEW QUESTION 28
Changes to the information processing facilities shall be done in controlled manner.
- A. True
- B. False
Answer: A
NEW QUESTION 29
Which measure is a preventive measure?
- A. Shutting down all internet traffic after a hacker has gained access to the company systems
- B. Installing a logging system that enables changes in a system to be recognized
- C. Putting sensitive information in a safe
Answer: C
NEW QUESTION 30
Below is Purpose of "Integrity", which is one of the Basic Components of Information Security
- A. the property that information is not made available or disclosed to unauthorized individuals
- B. the property of being accessible and usable upon demand by an authorized entity.
- C. the property of safeguarding the accuracy and completeness of assets.
- D. the property that information is not made available or disclosed to unauthorized individuals
Answer: C
NEW QUESTION 31
Which of the following is a preventive security measure?
- A. Shutting down the Internet connection after an attack
- B. Installing logging and monitoring software
- C. Storing sensitive information in a data save
Answer: C
NEW QUESTION 32
What is a definition of compliance?
- A. An official or authoritative instruction
- B. Laws, considered collectively or the process of making or enacting laws
- C. A rule or directive made and maintained by an authority.
- D. The state or fact of according with or meeting rules or standards
Answer: D
NEW QUESTION 33
A hacker gains access to a webserver and can view a file on the server containing credit card numbers.
Which of the Confidentiality, Integrity, Availability (CIA) principles of the credit card file are violated?
- A. Integrity
- B. Confidentiality
- C. Availability
- D. Compliance
Answer: B
NEW QUESTION 34
Cabling Security is associated with Power, telecommunication and network cabling carrying information are protected from interception and damage.
- A. True
- B. False
Answer: A
NEW QUESTION 35
......
Verified ISO-IEC-27001-Lead-Auditor exam dumps Q&As with Correct 99 Questions and Answers: https://www.exam4docs.com/ISO-IEC-27001-Lead-Auditor-study-questions.html
ISO-IEC-27001-Lead-Auditor Dumps PDF and Test Engine Exam Questions: https://drive.google.com/open?id=1Ui3b2faW8CIctX7Hh45wgy7SDbD2L22e

