
PDF (New 2023) Actual PECB ISO-IEC-27001-Lead-Auditor Exam Questions
Dumps Moneyack Guarantee - ISO-IEC-27001-Lead-Auditor Dumps UpTo 90% Off
NEW QUESTION 54
CEO sends a mail giving his views on the status of the company and the company's future strategy and the CEO's vision and the employee's part in it. The mail should be classified as
- A. Restricted Mail
- B. Internal Mail
- C. Confidential Mail
- D. Public Mail
Answer: B
NEW QUESTION 55
Which of the following does a lack of adequate security controls represent?
- A. Vulnerability
- B. Asset
- C. Impact
- D. Threat
Answer: A
NEW QUESTION 56
As a new member of the IT department you have noticed that confidential information has been leaked several times. This may damage the reputation of the company. You have been asked to propose an organisational measure to protect laptop computers. What is the first step in a structured approach to come up with this measure?
- A. Encrypt all sensitive information
- B. Appoint security staff
- C. Formulate a policy
- D. Set up an access control procedure
Answer: C
NEW QUESTION 57
A fire breaks out in a branch office of a health insurance company. The personnel are transferred to neighboring branches to continue their work.
Where in the incident cycle is moving to a stand-by arrangements found?
- A. between incident and damage
- B. between damage and recovery
- C. between recovery and threat
- D. between threat and incident
Answer: A
NEW QUESTION 58
A scenario wherein the city or location where the building(s) reside is / are not accessible.
- A. Facility
- B. Country
- C. Component
- D. City
Answer: D
NEW QUESTION 59
Backup media is kept in the same secure area as the servers. What risk may the organisation be exposed to?
- A. Responsibility for the backups is not defined well
- B. After a server crash, it will take extra time to bring it back up again
- C. Unauthorised persons will have access to both the servers and backups
- D. After a fire, the information systems cannot be restored
Answer: D
NEW QUESTION 60
What is the difference between a restricted and confidential document?
- A. Restricted - to be shared among named individuals
Confidential - to be shared with friends and family - B. Restricted - to be shared among named individuals
Confidential - to be shared across the organization only - C. Restricted - to be shared among named individuals
Confidential - to be shared among an authorized group - D. Restricted - to be shared among an authorized group
Confidential - to be shared among named individuals
Answer: C
NEW QUESTION 61
How is the purpose of information security policy best described?
- A. An information security policy documents the analysis of risks and the search for countermeasures.
- B. An information security policy provides direction and support to the management regarding information security.
- C. An information security policy makes the security plan concrete by providing it with the necessary details.
- D. An information security policy provides insight into threats and the possible consequences.
Answer: B
NEW QUESTION 62
Which of the following is an information security management system standard published by the International Organization for Standardization?
- A. ISO27001
- B. ISO22301
- C. ISO9008
- D. ISO5501
Answer: A
NEW QUESTION 63
What is the relationship between data and information?
- A. Information is the meaning and value assigned to a collection of data.
- B. Data is structured information.
Answer: A
NEW QUESTION 64
Which department maintain's contacts with law enforcement authorities, regulatory bodies, information service providers and telecommunications service providers depending on the service required.
- A. CISO
- B. CSM
- C. MRO
- D. COO
Answer: A
NEW QUESTION 65
You work in the office of a large company. You receive a call from a person claiming to be from the Helpdesk. He asks you for your password.
What kind of threat is this?
- A. Natural threat
- B. Arason
- C. Social Engineering
- D. Organizational threat
Answer: C
NEW QUESTION 66
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.
- A. False
- B. True
Answer: B
NEW QUESTION 67
What is we do in ACT - From PDCA cycle
- A. Take actions to continually improve people performance
- B. Take actions to continually improve process performance
- C. Take actions to continually monitor process performance
- D. Take actions to continually monitor process performance
Answer: B
NEW QUESTION 68
What is the goal of classification of information?
- A. Applying labels making the information easier to recognize
- B. To create a manual about how to handle mobile devices
- C. Structuring information according to its sensitivity
Answer: C
NEW QUESTION 69
A property of Information that has the ability to prove occurrence of a claimed event.
- A. Availability
- B. Electronic chain letters
- C. Accessibility
- D. Integrity
Answer: D
NEW QUESTION 70
__________ is a software used or created by hackers to disrupt computer operation, gather sensitive information, or gain access to private computer systems.
- A. Malware
- B. Virus
- C. Trojan
- D. Operating System
Answer: A
NEW QUESTION 71
Phishing is what type of Information Security Incident?
- A. Legal Incidents
- B. Technical Vulnerabilities
- C. Cracker/Hacker Attacks
- D. Private Incidents
Answer: C
NEW QUESTION 72
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?
- A. a physical security measure
- B. a logical security measure
- C. a corrective security measure
- D. a repressive security measure
Answer: A
NEW QUESTION 73
There is a scheduled fire drill in your facility. What should you do?
- A. None of the above
- B. Excuse yourself by saying you have an urgent deliverable
- C. Call in sick
- D. Participate in the drill
Answer: D
NEW QUESTION 74
In what part of the process to grant access to a system does the user present a token?
- A. Identification
- B. Verification
- C. Authorisation
- D. Authentication
Answer: A
NEW QUESTION 75
......
Updated Feb-2023 Pass ISO-IEC-27001-Lead-Auditor Exam - Real Practice Test Questions: https://www.actualtests4sure.com/ISO-IEC-27001-Lead-Auditor-test-questions.html
Pass Your Exam With 100% Verified ISO-IEC-27001-Lead-Auditor Exam Questions: https://drive.google.com/open?id=19-3YmHc264I62hRqLa13n7wcR3lOdmhg

