ISO-ISMS-LA Braindumps PDF, GAQM ISO-ISMS-LA Exam Cram [Q35-Q54]

Share

ISO-ISMS-LA Braindumps PDF, GAQM ISO-ISMS-LA Exam Cram

New 2021 ISO-ISMS-LA Sample Questions Reliable ISO-ISMS-LA Test Engine

NEW QUESTION 35
You are the lead auditor of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?

  • A. Risk skipping
  • B. Risk neutral
  • C. Risk bearing
  • D. Risk avoidance

Answer: C

 

NEW QUESTION 36
Integrity of data means

  • A. Data should be accessed by only the right people
  • B. Data should be viewable at all times
  • C. Accuracy and completeness of the data

Answer: C

 

NEW QUESTION 37
Information has a number of reliability aspects. Reliability is constantly being threatened. Examples of threats are: a cable becomes loose, someone alters information by accident, data is used privately or is falsified.
Which of these examples is a threat to integrity?

  • A. accidental alteration of data
  • B. private use of data
  • C. a loose cable
  • D. System restart

Answer: A

 

NEW QUESTION 38
Who is responsible for Initial asset allocation to the user/custodian of the assets?

  • A. Asset Owner
  • B. Asset Stakeholder
  • C. Asset Manager
  • D. Asset Practitioner

Answer: A

 

NEW QUESTION 39
Phishing is what type of Information Security Incident?

  • A. Private Incidents
  • B. Legal Incidents
  • C. Cracker/Hacker Attacks
  • D. Technical Vulnerabilities

Answer: C

 

NEW QUESTION 40
Stages of Information

  • A. creation, distribution, use, maintenance, disposition
  • B. creation, distribution, maintenance, disposition, use
  • C. creation, evolution, maintenance, use, disposition
  • D. creation, use, disposition, maintenance, evolution

Answer: A

 

NEW QUESTION 41
An employee caught temporarily storing an MP3 file in his workstation will not receive an IR.

  • A. False
  • B. True

Answer: A

 

NEW QUESTION 42
Which of the following is an information security management system standard published by the International Organization for Standardization?

  • A. ISO27001
  • B. ISO5501
  • C. ISO22301
  • D. ISO9008

Answer: A

 

NEW QUESTION 43
What type of compliancy standard, regulation or legislation provides a code of practice for information security?

  • A. Personal data protection act
  • B. ISO/IEC 27002
  • C. IT Service Management
  • D. Computer criminality act

Answer: B

 

NEW QUESTION 44
After a fire has occurred, what repressive measure can be taken?

  • A. Buying in a proper fire insurance policy
  • B. Repairing all systems after the fire
  • C. Extinguishing the fire after the fire alarm sounds

Answer: C

 

NEW QUESTION 45
What type of system ensures a coherent Information Security organisation?

  • A. Information Technology Service Management System (ITSM)
  • B. Information Exchange Data System (IEDS)
  • C. Information Security Management System (ISMS)
  • D. Federal Information Security Management Act (FISMA)

Answer: C

 

NEW QUESTION 46
What is a reason for the classification of information?

  • A. To provide clear identification tags
  • B. To structure the information according to its sensitivity
  • C. Creating a manual describing the BYOD policy

Answer: B

 

NEW QUESTION 47
Which threat could occur if no physical measures are taken?

  • A. Hackers entering the corporate network
  • B. Unauthorised persons viewing sensitive files
  • C. A server shutting down because of overheating
  • D. Confidential prints being left on the printer

Answer: C

 

NEW QUESTION 48
Which of the following factors does NOT contribute to the value of data for an organisation?

  • A. The importance of data for processes
  • B. The content of data
  • C. The correctness of data
  • D. The indispensability of data

Answer: B

 

NEW QUESTION 49
Who are allowed to access highly confidential files?

  • A. Non-employees designated with approved access and have signed NDA
  • B. Employees with a business need-to-know
  • C. Employees with signed NDA have a business need-to-know
  • D. Contractors with a business need-to-know

Answer: C

 

NEW QUESTION 50
A hacker gains access to a web server and reads the credit card numbers stored on that server. Which security principle is violated?

  • A. Authenticity
  • B. Confidentiality
  • C. Availability
  • D. Integrity

Answer: B

 

NEW QUESTION 51
How is the purpose of information security policy best described?

  • A. An information security policy provides direction and support to the management regarding information security.
  • B. An information security policy makes the security plan concrete by providing it with the necessary details.
  • C. An information security policy provides insight into threats and the possible consequences.
  • D. An information security policy documents the analysis of risks and the search for countermeasures.

Answer: A

 

NEW QUESTION 52
Information Security is a matter of building and maintaining ________ .

  • A. Confidentiality
  • B. Protection
  • C. Firewalls
  • D. Trust

Answer: D

 

NEW QUESTION 53
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 54
......

Feel GAQM ISO-ISMS-LA Dumps PDF Will likely be The best Option: https://www.updatedumps.com/GAQM/ISO-ISMS-LA-updated-exam-dumps.html