Try Before You Buy

Download a free sample of any of our exam questions and answers

  • 24/7 customer support, Secure shopping site
  • Free One year updates to match real exam scenarios
  • If you failed your exam after buying our products we will refund the full amount back to you.

[Oct-2021] Valid Way To Pass PECB Exam Dumps with ISO-IEC-27001-Lead-Implementer Exam Study Guide [Q18-Q40]

Share

[Oct-2021] Valid Way To Pass PECB Exam Dumps with ISO-IEC-27001-Lead-Implementer Exam Study Guide

All ISO-IEC-27001-Lead-Implementer Dumps and PECB Certified ISO/IEC 27001 Lead Implementer exam Training Courses Help candidates to study and pass the Exams hassle-free!

NEW QUESTION 18
A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the company's staff. Which kind of security measure could have prevented this?

  • A. A technical security measure
  • B. physical security measure
  • C. An organizational security measure

Answer: B

 

NEW QUESTION 19
What is an example of a non-human threat to the physical environment?

  • A. Storm
  • B. Corrupted file
  • C. Fraudulent transaction
  • D. Virus

Answer: A

 

NEW QUESTION 20
Select risk control activities for domain "10. Encryption" of ISO / 27002: 2013 (Choose two)

  • A. Physical security perimeter
  • B. Work in safe areas
  • C. Cryptographic Controls Use Policy
  • D. Key management

Answer: C,D

 

NEW QUESTION 21
Susan sends an email to Paul. Who determines the meaning and the value of information in this email?

  • A. Susan, the sender of the information.
  • B. Paul, therecipient of the information.
  • C. Paul and Susan, the sender and the recipient of the information.

Answer: B

 

NEW QUESTION 22
What is the ISO / IEC 27002 standard?

  • A. It is a guide of good practices that describes the controlobjectives and recommended controls regarding information security.
  • B. It is a guide that focuses on the critical aspects necessary for the successful design and implementation of an ISMS in accordance with ISO / IEC 27001
  • C. It is a guide for the development and use of applicable metrics and measurement techniques to determine the effectiveness of an ISMS and the controls or groups of controls implemented according to ISO / IEC 27001.

Answer: A

 

NEW QUESTION 23
We can acquire and supply information in various ways. The value of the information depends on whether it is reliable. What are the reliability aspects of information?

  • A. Availability, Information Value and Confidentiality
  • B. Availability, Integrity and Completeness
  • C. Timeliness, Accuracy and Completeness
  • D. Availability, Integrity and Confidentiality

Answer: D

 

NEW QUESTION 24
A non-human threat for computer systems is a flood. In which situation is a flood always a relevant threat?

  • A. If the riskanalysis has not been carried out.
  • B. When the organization is located near a river.
  • C. When the computer systems are not insured.
  • D. When computer systems are kept in a cellar below ground level.

Answer: D

 

NEW QUESTION 25
An employee in the administrative department of Smiths Consultants Inc. finds out that the expiry date of a contract with one of theclients is earlier than the start date. What type of measure could prevent this error?

  • A. Integrity measure
  • B. Availability measure
  • C. Technical measure
  • D. Organizational measure

Answer: C

 

NEW QUESTION 26
Which of the following measures is a correctivemeasure?

  • A. Restoring a backup of the correct database after a corrupt copy of the database was written over the original
  • B. Installing a virus scanner in an information system
  • C. Incorporating an Intrusion Detection System (IDS) in the design of a computer center
  • D. Making a backup of the data that has been created or altered that day

Answer: A

 

NEW QUESTION 27
What are the data protection principles set out in the GDPR?

  • A. Purpose limitation, proportionality, availability, data minimisation
  • B. Target group, proportionality, transparency, data minimisation
  • C. Purpose limitation, proportionality, data minimisation, transparency
  • D. Purpose limitation, pudicity, transparency, data minimisation

Answer: C

 

NEW QUESTION 28
Which is a legislative or regulatory act related to information security that can be imposed upon all organizations?

  • A. ISO/IEC 27001:2005
  • B. ISO/IEC 27002:2005
  • C. Personal data protection legislation
  • D. Intellectual Property Rights

Answer: C

 

NEW QUESTION 29
What is an example of a security incident?

  • A. The lighting in the department no longer works.
  • B. A file is saved under an incorrect name.
  • C. A member of staff loses a laptop.
  • D. You cannot set the correct fonts in your word processing software.

Answer: C

 

NEW QUESTION 30
What is the most important reason for applying the segregation of duties?

  • A. Segregation of duties makes it clear who is responsible for what.
  • B. Segregation of duties makes it easier for a person who is readywith his or her part of the work to take time off or to take over the work of another person.
  • C. Tasks and responsibilities must be separated in order to minimize the opportunities for business assets to be misused or changed, whether the change be unauthorized or unintentional.
  • D. Segregation of duties ensures that, when a person is absent, it can be investigated whether he or she has been committing fraud.

Answer: C

 

NEW QUESTION 31
Which of these reliability aspects is "completeness" a part of?

  • A. Availability
  • B. Integrity
  • C. Exclusivity
  • D. Confidentiality

Answer: B

 

NEW QUESTION 32
Responsibilities for information security in projects should be defined and allocated to:

  • A. the owner of the involved asset
  • B. the project manager
  • C. the InfoSec officer
  • D. specified roles defined in the used project management method of the organization

Answer: D

 

NEW QUESTION 33
Why is compliance important forthe reliability of the information?

  • A. By meeting the legislative requirements and theregulations of both the government and internal management, an organization shows that it manages its information in a sound manner.
  • B. When an organization employs a standard such as the ISO/IEC 27002 and uses it everywhere, it is compliant and thereforeit guarantees the reliability of its information.
  • C. When an organization is compliant, it meets the requirements of privacy legislation and, in doing so, protects the reliability of its information.
  • D. Compliance is another word for reliability. So, if a company indicates that it is compliant, it means that the information is managed properly.

Answer: A

 

NEW QUESTION 34
What sort of security does a Public Key Infrastructure (PKI) offer?

  • A. By providing agreements, procedures and an organization structure, a PKI defines which person or which system belongs to which specific public key.
  • B. A PKI ensures that backups of company data are made on a regular basis.
  • C. Having a PKI shows customers that a web-based business is secure.
  • D. It provides digital certificates that can be used to digitally signdocuments. Such signatures irrefutably determine from whom a document was sent.

Answer: B

 

NEW QUESTION 35
What is the greatest risk for an organization ifno information security policy has been defined?

  • A. It is not possible for an organization to implement information security in a consistent manner.
  • B. Information security activities are carried out by only a few people.
  • C. Too many measures areimplemented.
  • D. If everyone works with the same account, it is impossible to find out who worked on what.

Answer: A

 

NEW QUESTION 36
What is the best way to comply with legislation and regulations for personal data protection?

  • A. Maintaining an incident register
  • B. Appointing the responsibility to someone
  • C. Performing a vulnerability analysis
  • D. Performing a threat analysis

Answer: B

 

NEW QUESTION 37
Prior to employment, _________ as well as terms & conditions of employment are included as controls in ISO
27002 to ensure that employees and contractors understand their responsibilities and are suitable for the roles for which they are considered.

  • A. authorizing
  • B. screening
  • C. controlling
  • D. flexing

Answer: B

 

NEW QUESTION 38
......

Real Exam Questions & Answers - PECB ISO-IEC-27001-Lead-Implementer Dump is Ready: https://drive.google.com/open?id=1utzg1j9xRYAvrt_wl42CaaSVg-jl0lGx

Get Latest [Oct-2021] Conduct effective penetration tests using  ValidExam ISO-IEC-27001-Lead-Implementer