Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

ISO 27001:2013 ISMS - Certified Lead Auditor

Last Update 7 hours ago Total Questions : 100

The ISO 27001:2013 ISMS - Certified Lead Auditor content is now fully updated, with all current exam questions added 7 hours ago. Deciding to include ISO-ISMS-LA practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our ISO-ISMS-LA exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these ISO-ISMS-LA sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any ISO 27001:2013 ISMS - Certified Lead Auditor practice test comfortably within the allotted time.

Question # 11

The following are purposes of Information Security, except:

A.

Ensure Business Continuity

B.

Minimize Business Risk

C.

Increase Business Assets

D.

Maximize Return on Investment

Question # 12

Who are allowed to access highly confidential files?

A.

Employees with a business need-to-know

B.

Contractors with a business need-to-know

C.

Employees with signed NDA have a business need-to-know

D.

Non-employees designated with approved access and have signed NDA

Question # 13

What is a reason for the classification of information? 

A.

To provide clear identification tags

B.

To structure the information according to its sensitivity 

C.

Creating a manual describing the BYOD policy

Question # 14

Which of the following does an Asset Register contain? (Choose two)

A.

Asset Type

B.

Asset Owner

C.

Asset Modifier

D.

Process ID

Question # 15

What is the security management term for establishing whether someone's identity is correct?

A.

Identification

B.

Authentication

C.

Authorisation

D.

Verification

Question # 16

Which of the following does a lack of adequate security controls represent?

A.

Asset

B.

Vulnerability

C.

Impact

D.

Threat

Question # 17

An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.

A.

True

B.

False

Question # 18

What is an example of a human threat?

A.

a lightning strike

B.

fire

C.

phishing

D.

thunderstrom

Question # 19

The computer room is protected by a pass reader. Only the System Management department has a pass. 

What type of security measure is this?

A.

a corrective security measure

B.

a physical security measure

C.

a logical security measure 

D.

a repressive security measure

Question # 20

A couple of years ago you started your company which has now grown from 1 to 20 employees. Your company’s information is worth more and more and gone are the days when you could keep control yourself. You are aware that you have to take measures, but what should they be? You hire a consultant who advises you to start with a qualitative risk analysis. 

What is a qualitative risk analysis? 

A.

This analysis follows a precise statistical probability calculation in order to calculate exact loss caused by damage. 

B.

This analysis is based on scenarios and situations and produces a subjective view of the possible threats.

Go to page: