[2021] Pass PECB ISO-IEC-27001-Lead-Auditor Exam Updated 99 Questions [Q11-Q35]

Share

[2021] Pass  PECB ISO-IEC-27001-Lead-Auditor Exam Updated 99 Questions

Get 2021 Updated Free PECB ISO-IEC-27001-Lead-Auditor Exam Questions & Answer

NEW QUESTION 11
What type of compliancy standard, regulation or legislation provides a code of practice for information security?

  • A. IT Service Management
  • B. ISO/IEC 27002
  • C. Personal data protection act
  • D. Computer criminality act

Answer: B

 

NEW QUESTION 12
A member of staff denies sending a particular message.
Which reliability aspect of information is in danger here?

  • A. integrity
  • B. availability
  • C. confidentiality
  • D. correctness

Answer: A

 

NEW QUESTION 13
Which of the following statements are correct for Clean Desk Policy?

  • A. Don't leave laptops without cable lock.
  • B. Don't leave highly confidential items.
  • C. Don't leave valuable items on your desk if you are not in your work area.
  • D. Don't leave confidential documents on your desk.

Answer: B,C,D

 

NEW QUESTION 14
Which reliability aspect of information is compromised when a staff member denies having sent a message?

  • A. Integrity
  • B. Availability
  • C. Confidentiality
  • D. Correctness

Answer: A

 

NEW QUESTION 15
What is the goal of classification of information?

  • A. Structuring information according to its sensitivity
  • B. To create a manual about how to handle mobile devices
  • C. Applying labels making the information easier to recognize

Answer: A

 

NEW QUESTION 16
All are prohibited in acceptable use of information assets, except:

  • A. Electronic chain letters
  • B. Company-wide e-mails with supervisor/TL permission.
  • C. E-mail copies to non-essential readers
  • D. Messages with very large attachments or to a large number ofrecipients.

Answer: B

 

NEW QUESTION 17
Which of the following is a possible event that can have a disruptive effect on the reliability of information?

  • A. Vulnerability
  • B. Risk
  • C. Threat
  • D. Dependency

Answer: C

 

NEW QUESTION 18
What is an example of a human threat?

  • A. phishing
  • B. a lightning strike
  • C. fire
  • D. thunderstrom

Answer: A

 

NEW QUESTION 19
What is the name of the system that guarantees the coherence of information security in the organization?

  • A. Security regulations for special information for the government
  • B. Rootkit
  • C. Information Security Management System (ISMS)
  • D. Information Technology Service Management (ITSM)

Answer: C

 

NEW QUESTION 20
What is the security management term for establishing whether someone's identity is correct?

  • A. Identification
  • B. Verification
  • C. Authentication
  • D. Authorisation

Answer: C

 

NEW QUESTION 21
Changes on project-managed applications or database should undergo the change control process as documented.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 22
You are the lead auditor of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?

  • A. Risk bearing
  • B. Risk neutral
  • C. Risk avoidance
  • D. Risk skipping

Answer: A

 

NEW QUESTION 23
A planning process that introduced the concept of planning as a cycle that forms the basis for continuous improvement is called:

  • A. time based planning.
  • B. plan, do, check, act.
  • C. RACI Matrix
  • D. planning for continuous improvement.

Answer: B

 

NEW QUESTION 24
Integrity of data means

  • A. Accuracy and completeness of the data
  • B. Data should be viewable at all times
  • C. Data should be accessed by only the right people

Answer: A

 

NEW QUESTION 25
Which of the following is not a type of Information Security attack?

  • A. Privacy Incidents
  • B. Vehicular Incidents
  • C. Legal Incidents
  • D. Technical Vulnerabilities

Answer: B

 

NEW QUESTION 26
Information or data that are classified as ______ do not require labeling.

  • A. Public
  • B. Internal
  • C. Highly Confidential
  • D. Confidential

Answer: A

 

NEW QUESTION 27
You have a hard copy of a customer design document that you want to dispose off. What would you do

  • A. Shred it using a shredder
  • B. Be environment friendly and reuse it for writing
  • C. Give it to the office boy to reuse it for other purposes
  • D. Throw it in any dustbin

Answer: A

 

NEW QUESTION 28
Changes to the information processing facilities shall be done in controlled manner.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 29
Which measure is a preventive measure?

  • A. Shutting down all internet traffic after a hacker has gained access to the company systems
  • B. Installing a logging system that enables changes in a system to be recognized
  • C. Putting sensitive information in a safe

Answer: C

 

NEW QUESTION 30
Below is Purpose of "Integrity", which is one of the Basic Components of Information Security

  • A. the property that information is not made available or disclosed to unauthorized individuals
  • B. the property of being accessible and usable upon demand by an authorized entity.
  • C. the property of safeguarding the accuracy and completeness of assets.
  • D. the property that information is not made available or disclosed to unauthorized individuals

Answer: C

 

NEW QUESTION 31
Which of the following is a preventive security measure?

  • A. Shutting down the Internet connection after an attack
  • B. Installing logging and monitoring software
  • C. Storing sensitive information in a data save

Answer: C

 

NEW QUESTION 32
What is a definition of compliance?

  • A. An official or authoritative instruction
  • B. Laws, considered collectively or the process of making or enacting laws
  • C. A rule or directive made and maintained by an authority.
  • D. The state or fact of according with or meeting rules or standards

Answer: D

 

NEW QUESTION 33
A hacker gains access to a webserver and can view a file on the server containing credit card numbers.
Which of the Confidentiality, Integrity, Availability (CIA) principles of the credit card file are violated?

  • A. Integrity
  • B. Confidentiality
  • C. Availability
  • D. Compliance

Answer: B

 

NEW QUESTION 34
Cabling Security is associated with Power, telecommunication and network cabling carrying information are protected from interception and damage.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 35
......

Verified ISO-IEC-27001-Lead-Auditor exam dumps Q&As with Correct 99 Questions and Answers: https://www.exam4docs.com/ISO-IEC-27001-Lead-Auditor-study-questions.html

ISO-IEC-27001-Lead-Auditor Dumps PDF and Test Engine Exam Questions: https://drive.google.com/open?id=1Ui3b2faW8CIctX7Hh45wgy7SDbD2L22e