[Jan-2022] ISO-IEC-27001-Lead-Implementer Dumps are Available for Instant Access using ITCertMagic [Q22-Q44]

Share

[Jan-2022] ISO-IEC-27001-Lead-Implementer Dumps are Available for Instant Access using  ITCertMagic 

ISO-IEC-27001-Lead-Implementer Dumps 2022 - New PECB ISO-IEC-27001-Lead-Implementer Exam Questions

NEW QUESTION 22
Logging in to a computer system is an access-granting process consisting of three steps: identification, authentication and authorization. What occurs during the first step of this process: identification?

  • A. Thefirst step consists of checking if the user is using the correct certificate.
  • B. The first step consists of granting access to the information to which the user is authorized.
  • C. The first step consists of comparing the password with the registered password.
  • D. The first step consists of checking if the user appears on the list of authorized users.

Answer: D

 

NEW QUESTION 23
Midwest Insurance grades the monthly report of all claimed losses per insured as confidential. What is accomplished if all other reports from this insurance office are also assigned the appropriate grading?

  • A. Everyone can easily see how sensitive the reports' contents are by consulting the grading label.
  • B. A determination can be made as to which report should be printed firstand which ones can wait a little longer.
  • C. The costs for automating are easier to charge to the responsible departments.
  • D. Reports can be developed more easily and with fewer errors.

Answer: A

 

NEW QUESTION 24
Which of the following measures is a correctivemeasure?

  • A. Installing a virus scanner in an information system
  • B. Restoring a backup of the correct database after a corrupt copy of the database was written over the original
  • C. Making a backup of the data that has been created or altered that day
  • D. Incorporating an Intrusion Detection System (IDS) in the design of a computer center

Answer: B

 

NEW QUESTION 25
Select risk control activities for domain "10. Encryption" of ISO / 27002: 2013 (Choose two)

  • A. Work in safe areas
  • B. Physical security perimeter
  • C. Cryptographic Controls Use Policy
  • D. Key management

Answer: C,D

 

NEW QUESTION 26
You have juststarted working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?

  • A. A code of conduct is alegal obligation that organizations have to meet.
  • B. A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.
  • C. A code of conduct prevents a virus outbreak.
  • D. A code of conduct helps to prevent the misuse of IT facilities.

Answer: D

 

NEW QUESTION 27
Which of these control objectives are NOT in the domain "12.OPERATIONAL SAFETY"?

  • A. Redundancies
  • B. Test data
  • C. Protection against malicious code
  • D. Technical vulnerability management

Answer: A

 

NEW QUESTION 28
A non-human threat for computer systems is a flood. In which situation is a flood always a relevant threat?

  • A. When the organization is located near a river.
  • B. When computer systems are kept in a cellar below ground level.
  • C. When the computer systems are not insured.
  • D. If the riskanalysis has not been carried out.

Answer: B

 

NEW QUESTION 29
True or False: Organizations allowing teleworking activities, the physical security of the building and the local environment of the teleworking site should be considered

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 30
Which is a legislative or regulatory act related to information security that can be imposed upon all organizations?

  • A. ISO/IEC 27001:2005
  • B. Personal data protection legislation
  • C. Intellectual Property Rights
  • D. ISO/IEC 27002:2005

Answer: B

 

NEW QUESTION 31
An employee in the administrative department of Smiths Consultants Inc. finds out that the expiry date of a contract with one of theclients is earlier than the start date. What type of measure could prevent this error?

  • A. Organizational measure
  • B. Integrity measure
  • C. Technical measure
  • D. Availability measure

Answer: C

 

NEW QUESTION 32
The identified owner of an asset is always an individual

  • A. True
  • B. False

Answer: B

 

NEW QUESTION 33
You are a consultant and areregularly hired by the Ministry of Defense to perform analysis. Since the assignments are irregular, you outsource the administration of your business to temporary workers. You don't want the temporary workers to have access to your reports.
Which reliability aspect of the information in your reports must you protect?

  • A. Integrity
  • B. Confidentiality
  • C. Availability

Answer: B

 

NEW QUESTION 34
Physical labels and ________ are two common forms of labeling which are mentioned in ISO 27002.

  • A. bridge
  • B. metadata
  • C. teradata

Answer: B

 

NEW QUESTION 35
Prior to employment, _________ as well as terms & conditions of employment are included as controls in ISO
27002 to ensure that employees and contractors understand their responsibilities and are suitable for the roles for which they are considered.

  • A. screening
  • B. controlling
  • C. authorizing
  • D. flexing

Answer: A

 

NEW QUESTION 36
Susan sends an email to Paul. Who determines the meaning and the value of information in this email?

  • A. Paul and Susan, the sender and the recipient of the information.
  • B. Paul, therecipient of the information.
  • C. Susan, the sender of the information.

Answer: B

 

NEW QUESTION 37
What does the Information Security Policy describe?

  • A. which InfoSec-controls have been selected and taken
  • B. what the implementation-planning of the information security management system is
  • C. how the InfoSec-objectives will be reached
  • D. which Information Security-procedures are selected

Answer: C

 

NEW QUESTION 38
Responsibilities for information security in projects should be defined and allocated to:

  • A. the owner of the involved asset
  • B. specified roles defined in the used project management method of the organization
  • C. the InfoSec officer
  • D. the project manager

Answer: B

 

NEW QUESTION 39
Peter works at the company Midwest Insurance. His manager, Linda, asks him to send the terms and conditions for a life insurance policy to Rachel, a client. Who determines the value of the information in the insurance terms and conditions document?

  • A. The recipient, Rachel
  • B. The person who drafted the insurance terms and conditions
  • C. The sender, Peter
  • D. The manager, Linda

Answer: A

 

NEW QUESTION 40
Select the controls that correspond to thedomain "9. ACCESS CONTROL" of ISO / 27002 (Choose three)

  • A. Management of access rights with special privileges
  • B. Restriction of access to information
  • C. Return of assets
  • D. Withdrawal or adaptation of access rights

Answer: B,C,D

 

NEW QUESTION 41
You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventoryof threats and risks.
What is the relation between a threat, risk and risk analysis?

  • A. A risk analysis is used to clarify which threats are relevant and what risks they involve.
  • B. Risk analyses help to find a balance between threats and risks.
  • C. A risk analysis identifies threats from the known risks.
  • D. A riskanalysis is used to remove the risk of a threat.

Answer: A

 

NEW QUESTION 42
......

PECB ISO-IEC-27001-Lead-Implementer Exam Practice Test Questions: https://www.itcertmagic.com/PECB/real-ISO-IEC-27001-Lead-Implementer-exam-prep-dumps.html

Free ISO-IEC-27001-Lead-Implementer Braindumps Download Updated: https://drive.google.com/open?id=1vwF-TyE71Gh1XutMPnsYFaB2lbVeUFRX