PDF (New 2023) Actual PECB ISO-IEC-27001-Lead-Auditor Exam Questions [Q54-Q75]

Share

PDF (New 2023) Actual PECB ISO-IEC-27001-Lead-Auditor Exam Questions

Dumps Moneyack Guarantee - ISO-IEC-27001-Lead-Auditor Dumps UpTo 90% Off

NEW QUESTION 54
CEO sends a mail giving his views on the status of the company and the company's future strategy and the CEO's vision and the employee's part in it. The mail should be classified as

  • A. Restricted Mail
  • B. Internal Mail
  • C. Confidential Mail
  • D. Public Mail

Answer: B

 

NEW QUESTION 55
Which of the following does a lack of adequate security controls represent?

  • A. Vulnerability
  • B. Asset
  • C. Impact
  • D. Threat

Answer: A

 

NEW QUESTION 56
As a new member of the IT department you have noticed that confidential information has been leaked several times. This may damage the reputation of the company. You have been asked to propose an organisational measure to protect laptop computers. What is the first step in a structured approach to come up with this measure?

  • A. Encrypt all sensitive information
  • B. Appoint security staff
  • C. Formulate a policy
  • D. Set up an access control procedure

Answer: C

 

NEW QUESTION 57
A fire breaks out in a branch office of a health insurance company. The personnel are transferred to neighboring branches to continue their work.
Where in the incident cycle is moving to a stand-by arrangements found?

  • A. between incident and damage
  • B. between damage and recovery
  • C. between recovery and threat
  • D. between threat and incident

Answer: A

 

NEW QUESTION 58
A scenario wherein the city or location where the building(s) reside is / are not accessible.

  • A. Facility
  • B. Country
  • C. Component
  • D. City

Answer: D

 

NEW QUESTION 59
Backup media is kept in the same secure area as the servers. What risk may the organisation be exposed to?

  • A. Responsibility for the backups is not defined well
  • B. After a server crash, it will take extra time to bring it back up again
  • C. Unauthorised persons will have access to both the servers and backups
  • D. After a fire, the information systems cannot be restored

Answer: D

 

NEW QUESTION 60
What is the difference between a restricted and confidential document?

  • A. Restricted - to be shared among named individuals
    Confidential - to be shared with friends and family
  • B. Restricted - to be shared among named individuals
    Confidential - to be shared across the organization only
  • C. Restricted - to be shared among named individuals
    Confidential - to be shared among an authorized group
  • D. Restricted - to be shared among an authorized group
    Confidential - to be shared among named individuals

Answer: C

 

NEW QUESTION 61
How is the purpose of information security policy best described?

  • A. An information security policy documents the analysis of risks and the search for countermeasures.
  • B. An information security policy provides direction and support to the management regarding information security.
  • C. An information security policy makes the security plan concrete by providing it with the necessary details.
  • D. An information security policy provides insight into threats and the possible consequences.

Answer: B

 

NEW QUESTION 62
Which of the following is an information security management system standard published by the International Organization for Standardization?

  • A. ISO27001
  • B. ISO22301
  • C. ISO9008
  • D. ISO5501

Answer: A

 

NEW QUESTION 63
What is the relationship between data and information?

  • A. Information is the meaning and value assigned to a collection of data.
  • B. Data is structured information.

Answer: A

 

NEW QUESTION 64
Which department maintain's contacts with law enforcement authorities, regulatory bodies, information service providers and telecommunications service providers depending on the service required.

  • A. CISO
  • B. CSM
  • C. MRO
  • D. COO

Answer: A

 

NEW QUESTION 65
You work in the office of a large company. You receive a call from a person claiming to be from the Helpdesk. He asks you for your password.
What kind of threat is this?

  • A. Natural threat
  • B. Arason
  • C. Social Engineering
  • D. Organizational threat

Answer: C

 

NEW QUESTION 66
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 67
What is we do in ACT - From PDCA cycle

  • A. Take actions to continually improve people performance
  • B. Take actions to continually improve process performance
  • C. Take actions to continually monitor process performance
  • D. Take actions to continually monitor process performance

Answer: B

 

NEW QUESTION 68
What is the goal of classification of information?

  • A. Applying labels making the information easier to recognize
  • B. To create a manual about how to handle mobile devices
  • C. Structuring information according to its sensitivity

Answer: C

 

NEW QUESTION 69
A property of Information that has the ability to prove occurrence of a claimed event.

  • A. Availability
  • B. Electronic chain letters
  • C. Accessibility
  • D. Integrity

Answer: D

 

NEW QUESTION 70
__________ is a software used or created by hackers to disrupt computer operation, gather sensitive information, or gain access to private computer systems.

  • A. Malware
  • B. Virus
  • C. Trojan
  • D. Operating System

Answer: A

 

NEW QUESTION 71
Phishing is what type of Information Security Incident?

  • A. Legal Incidents
  • B. Technical Vulnerabilities
  • C. Cracker/Hacker Attacks
  • D. Private Incidents

Answer: C

 

NEW QUESTION 72
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?

  • A. a physical security measure
  • B. a logical security measure
  • C. a corrective security measure
  • D. a repressive security measure

Answer: A

 

NEW QUESTION 73
There is a scheduled fire drill in your facility. What should you do?

  • A. None of the above
  • B. Excuse yourself by saying you have an urgent deliverable
  • C. Call in sick
  • D. Participate in the drill

Answer: D

 

NEW QUESTION 74
In what part of the process to grant access to a system does the user present a token?

  • A. Identification
  • B. Verification
  • C. Authorisation
  • D. Authentication

Answer: A

 

NEW QUESTION 75
......

Updated Feb-2023 Pass ISO-IEC-27001-Lead-Auditor Exam - Real Practice Test Questions: https://www.actualtests4sure.com/ISO-IEC-27001-Lead-Auditor-test-questions.html

Pass Your Exam With 100% Verified ISO-IEC-27001-Lead-Auditor Exam Questions: https://drive.google.com/open?id=19-3YmHc264I62hRqLa13n7wcR3lOdmhg