
ISO-IEC-27001-Lead-Auditor Certification – Valid Exam Dumps Questions Study Guide! (Updated 99 Questions)
ISO-IEC-27001-Lead-Auditor Dumps are Available for Instant Access using Exam4Docs
PECB ISO-IEC-27001-Lead-Auditor Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
NEW QUESTION 38
A couple of years ago you started your company which has now grown from 1 to 20 employees. Your company's information is worth more and more and gone are the days when you could keep control yourself.
You are aware that you have to take measures, but what should they be? You hire a consultant who advises you to start with a qualitative risk analysis.
What is a qualitative risk analysis?
- A. This analysis is based on scenarios and situations and produces a subjective view of the possible threats.
- B. This analysis follows a precise statistical probability calculation in order to calculate exact loss caused by damage.
Answer: A
NEW QUESTION 39
A fire breaks out in a branch office of a health insurance company. The personnel are transferred to neighboring branches to continue their work.
Where in the incident cycle is moving to a stand-by arrangements found?
- A. between recovery and threat
- B. between damage and recovery
- C. between threat and incident
- D. between incident and damage
Answer: D
NEW QUESTION 40
Implement plan on a test basis - this comes under which section of PDCA
- A. Plan
- B. Do
- C. Check
- D. Act
Answer: B
NEW QUESTION 41
An administration office is going to determine the dangers to which it is exposed.
What do we call a possible event that can have a disruptive effect on the reliability of information?
- A. dependency
- B. vulnerability
- C. threat
- D. risk
Answer: C
NEW QUESTION 42
What is an example of a human threat?
- A. a lightning strike
- B. phishing
- C. thunderstrom
- D. fire
Answer: B
NEW QUESTION 43
What controls can you do to protect sensitive data in your computer when you go out for lunch?
- A. You are confident to leave your computer screen as is since a password protected screensaver is installed and it is set to activate after 10 minutes of inactivity
- B. You lock your computer by pressing Windows+L or CTRL-ALT-DELETE and then click "Lock Computer".
- C. You activate your favorite screen-saver
- D. You turn off the monitor
Answer: B
NEW QUESTION 44
In what part of the process to grant access to a system does the user present a token?
- A. Identification
- B. Authorisation
- C. Verification
- D. Authentication
Answer: A
NEW QUESTION 45
The following are the guidelines to protect your password, except:
- A. Do not share passwords with anyone
- B. For easy recall, use the same password for company and personal accounts
- C. Don't use the same password for various company system security access
- D. Change a temporary password on first log-on
Answer: A,B
NEW QUESTION 46
What is the standard definition of ISMS?
- A. A company wide business objectives to achieve information security awareness for establishing, implementing, operating, monitoring, reviewing, maintaining and improving
- B. A project-based approach to achieve business objectives for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization's information security
- C. A systematic approach for establishing, implementing, operating,monitoring, reviewing, maintaining and improving an organization's information security to achieve business objectives.
- D. Is an information security systematic approach to achieve business objectives for implementation, establishing, reviewing,operating and maintaining organization's reputation.
Answer: C
NEW QUESTION 47
In which order is an Information Security Management System set up?
- A. Establishment, operation, monitoring, improvement
- B. Establishment, implementation, operation, maintenance
- C. Implementation, operation, maintenance, establishment
- D. Implementation, operation, improvement, maintenance
Answer: B
NEW QUESTION 48
Changes to the information processing facilities shall be done in controlled manner.
- A. True
- B. False
Answer: A
NEW QUESTION 49
Which of the following is an information security management system standard published by the International Organization for Standardization?
- A. ISO5501
- B. ISO22301
- C. ISO9008
- D. ISO27001
Answer: D
NEW QUESTION 50
What is the purpose of an Information Security policy?
- A. An information security policy provides direction and support to the management regarding information security
- B. An information security policy makes the security plan concrete by providing the necessary details
- C. An information security policy provides insight into threats and the possible consequences
- D. An information security policy documents the analysis of risks and the search for countermeasures
Answer: A
NEW QUESTION 51
In order to take out a fire insurance policy, an administration office must determine the value of the data that it manages.
Which factor is [b]not[/b] important for determining the value of data for an organization?
- A. The degree to which missing, incomplete or incorrect data can be recovered.
- B. The importance of the business processes that make use of the data.
- C. The indispensability of data for the business processes.
- D. The content of data.
Answer: D
NEW QUESTION 52
After a fire has occurred, what repressive measure can be taken?
- A. Extinguishing the fire after the fire alarm sounds
- B. Buying in a proper fire insurance policy
- C. Repairing all systems after the fire
Answer: A
NEW QUESTION 53
CMM stands for?
- A. Capable Mature Model
- B. Capacity Maturity Matrix
- C. Capability Maturity Matrix
- D. Capability Maturity Model
Answer: D
NEW QUESTION 54
You work in the office of a large company. You receive a call from a person claiming to be from the Helpdesk. He asks you for your password.
What kind of threat is this?
- A. Natural threat
- B. Organizational threat
- C. Arason
- D. Social Engineering
Answer: D
NEW QUESTION 55
Cabling Security is associated with Power, telecommunication and network cabling carrying information are protected from interception and damage.
- A. True
- B. False
Answer: A
NEW QUESTION 56
Integrity of data means
- A. Data should be viewable at all times
- B. Accuracy and completeness of the data
- C. Data should be accessed by only the right people
Answer: B
NEW QUESTION 57
You see a blue color sticker on certain physical assets. What does this signify?
- A. The asset with blue stickers should be kept air conditioned at all times
- B. The asset is critical and the impact is restricted to an employee only
- C. The asset is very high critical and its failure affects the entire organization
- D. The asset is high critical and its failure will affect a group/s/project's work in the organization
Answer: D
NEW QUESTION 58
......
PECB ISO-IEC-27001-Lead-Auditor Exam Practice Test Questions: https://www.exam4docs.com/ISO-IEC-27001-Lead-Auditor-study-questions.html
ISO-IEC-27001-Lead-Auditor Dumps 2023 - New PECB ISO-IEC-27001-Lead-Auditor Exam Questions: https://drive.google.com/open?id=1Ui3b2faW8CIctX7Hh45wgy7SDbD2L22e

