Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

ISO / IEC 27002 - Lead Implementer

Last Update 3 hours ago Total Questions : 50

The ISO / IEC 27002 - Lead Implementer content is now fully updated, with all current exam questions added 3 hours ago. Deciding to include ISO-IEC-LI practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our ISO-IEC-LI exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these ISO-IEC-LI sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any ISO / IEC 27002 - Lead Implementer practice test comfortably within the allotted time.

Question # 1

A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the company's staff. Which kind of security measure could have prevented this?

A.

physical security measure

B.

An organizational security measure

C.

A technical security measure

Question # 2

You have just started working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?

A.

A code of conduct helps to prevent the misuse of IT facilities.

B.

A code of conduct is a legal obligation that organizations have to meet.

C.

A code of conduct prevents a virus outbreak.

D.

A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.

Question # 3

What is an example of a security incident?

A.

The lighting in the department no longer works.

B.

A member of staff loses a laptop.

C.

You cannot set the correct fonts in your word processing software.

D.

A file is saved under an incorrect name.

Question # 4

What is the greatest risk for an organization if no information security policy has been defined?

A.

If everyone works with the same account, it is impossible to find out who worked on what.

B.

Information security activities are carried out by only a few people.

C.

Too many measures are implemented.

D.

It is not possible for an organization to implement information security in a consistent manner.

Question # 5

Midwest Insurance grades the monthly report of all claimed losses per insured as confidential. What is accomplished if all other reports from this insurance office are also assigned the appropriate grading?

A.

The costs for automating are easier to charge to the responsible departments.

B.

A determination can be made as to which report should be printed first and which ones can wait a little longer.

C.

Everyone can easily see how sensitive the reports' contents are by consulting the grading label.

D.

Reports can be developed more easily and with fewer errors.

Question # 6

What are the data protection principles set out in the GDPR?

A.

Purpose limitation, proportionality, availability, data minimisation

B.

Purpose limitation, proportionality, data minimisation, transparency

C.

Target group, proportionality, transparency, data minimisation

D.

Purpose limitation, pudicity, transparency, data minimisation

Question # 7

What is the ISO / IEC 27002 standard?

A.

It is a guide of good practices that describes the control objectives and recommended controls regarding information security.

B.

It is a guide that focuses on the critical aspects necessary for the successful design and implementation of an ISMS in accordance with ISO / IEC 27001

C.

It is a guide for the development and use of applicable metrics and measurement techniques to determine the effectiveness of an ISMS and the controls or groups of controls implemented according to ISO / IEC 27001.

Question # 8

Prior to employment, _________ as well as terms & conditions of employment are included as controls in ISO 27002 to ensure that employees and contractors understand their responsibilities and are suitable for the roles for which they are considered.

A.

screening

B.

authorizing

C.

controlling

D.

flexing

Question # 9

You apply for a position in another company and get the job. Along with your contract, you are asked to sign a code of conduct. What is a code of conduct?

A.

A code of conduct specifies how employees are expected to conduct themselves and is the same for all companies.

B.

A code of conduct is a standard part of a labor contract.

C.

A code of conduct differs from company to company and specifies, among other things, the rules of behavior with regard to the usage of information systems.

Question # 10

Select the controls that correspond to the domain "9. ACCESS CONTROL" of ISO / 27002 (Choose three)

A.

Restriction of access to information

B.

Return of assets

C.

Management of access rights with special privileges

D.

Withdrawal or adaptation of access rights

Go to page: