[Oct 16, 2022] ISO-ISMS-LA Test Prep Training Practice Exam Questions Practice Tests [Q48-Q72]

Share

[Oct 16, 2022] ISO-ISMS-LA Test Prep Training Practice Exam Questions Practice Tests

Exam Questions Answers Braindumps ISO-ISMS-LA Exam Dumps PDF Questions

NEW QUESTION 48
Which of the following factors does NOT contribute to the value of data for an organisation?

  • A. The indispensability of data
  • B. The importance of data for processes
  • C. The correctness of data
  • D. The content of data

Answer: D

 

NEW QUESTION 49
What is the standard definition of ISMS?

  • A. A company wide business objectives to achieve information security awareness for establishing, implementing, operating, monitoring, reviewing, maintaining and improving
  • B. Is an information security systematic approach to achieve business objectives for implementation, establishing, reviewing,operating and maintaining organization's reputation.
  • C. A project-based approach to achieve business objectives for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization's information security
  • D. A systematic approach for establishing, implementing, operating,monitoring, reviewing, maintaining and improving an organization's information security to achieve business objectives.

Answer: D

 

NEW QUESTION 50
Does the security have the right to ask you to display your ID badges and check your bags?

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 51
CEO sends a mail giving his views on the status of the company and the company's future strategy and the CEO's vision and the employee's part in it. The mail should be classified as

  • A. Restricted Mail
  • B. Confidential Mail
  • C. Public Mail
  • D. Internal Mail

Answer: D

 

NEW QUESTION 52
Which measure is a preventive measure?

  • A. Installing a logging system that enables changes in a system to be recognized
  • B. Putting sensitive information in a safe
  • C. Shutting down all internet traffic after a hacker has gained access to the company systems

Answer: B

 

NEW QUESTION 53
In the event of an Information security incident, system users' roles and responsibilities are to be observed, except:

  • A. Report suspected or known incidents upon discovery through the Servicedesk
  • B. Cooperate with investigative personnel during investigation if needed
  • C. Preserve evidence if necessary
  • D. Make the information security incident details known to all employees

Answer: D

 

NEW QUESTION 54
Changes on project-managed applications or database should undergo the change control process as documented.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 55
-------------------------is an asset like other important business assets has value to an organization and consequently needs to be protected.

  • A. Infrastructure
  • B. Security
  • C. Data
  • D. Information

Answer: D

 

NEW QUESTION 56
What is social engineering?

  • A. Creating a situation wherein a third party gains confidential information from you
  • B. A group planning for a social activity in the organization
  • C. The organization planning an activity for welfare of the neighborhood

Answer: A

 

NEW QUESTION 57
Who is authorized to change the classification of a document?

  • A. The administrator of the document
  • B. The author of the document
  • C. The manager of the owner of the document
  • D. The owner of the document

Answer: D

 

NEW QUESTION 58
Availability means

  • A. Service should be accessible at the required time and usable only by the authorized entity
  • B. Service should be accessible at the required time and usable by all
  • C. Service should not be accessible when required

Answer: A

 

NEW QUESTION 59
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?

  • A. a logical security measure
  • B. a physical security measure
  • C. a corrective security measure
  • D. a repressive security measure

Answer: B

 

NEW QUESTION 60
What type of compliancy standard, regulation or legislation provides a code of practice for information security?

  • A. IT Service Management
  • B. ISO/IEC 27002
  • C. Computer criminality act
  • D. Personal data protection act

Answer: B

 

NEW QUESTION 61
A property of Information that has the ability to prove occurrence of a claimed event.

  • A. Accessibility
  • B. Electronic chain letters
  • C. Availability
  • D. Integrity

Answer: D

 

NEW QUESTION 62
There is a network printer in the hallway of the company where you work. Many employees don't pick up their printouts immediately and leave them on the printer.
What are the consequences of this to the reliability of the information?

  • A. The confidentiality of the information is no longer guaranteed.
  • B. The availability of the information is no longer guaranteed.
  • C. The integrity of the information is no longer guaranteed.
  • D. The Security of the information is no longer guaranteed.

Answer: B

 

NEW QUESTION 63
Information Security is a matter of building and maintaining ________ .

  • A. Trust
  • B. Firewalls
  • C. Confidentiality
  • D. Protection

Answer: A

 

NEW QUESTION 64
CMM stands for?

  • A. Capability Maturity Matrix
  • B. Capable Mature Model
  • C. Capability Maturity Model
  • D. Capacity Maturity Matrix

Answer: C

 

NEW QUESTION 65
What is the security management term for establishing whether someone's identity is correct?

  • A. Authorisation
  • B. Authentication
  • C. Verification
  • D. Identification

Answer: B

 

NEW QUESTION 66
A member of staff denies sending a particular message.
Which reliability aspect of information is in danger here?

  • A. availability
  • B. confidentiality
  • C. correctness
  • D. integrity

Answer: D

 

NEW QUESTION 67
A well-executed risk analysis provides a great deal of useful information. A risk analysis has four main objectives.
What is not one of the four main objectives of a risk analysis?

  • A. Implementing counter measures
  • B. Establishing a balance between the costs of an incident and the costs of a security measure
  • C. Determining relevant vulnerabilities and threats
  • D. Identifying assets and their value

Answer: A

 

NEW QUESTION 68
The following are purposes of Information Security, except:

  • A. Minimize Business Risk
  • B. Maximize Return on Investment
  • C. Ensure Business Continuity
  • D. Increase Business Assets

Answer: D

 

NEW QUESTION 69
A fire breaks out in a branch office of a health insurance company. The personnel are transferred to neighboring branches to continue their work.
Where in the incident cycle is moving to a stand-by arrangements found?

  • A. between threat and incident
  • B. between damage and recovery
  • C. between incident and damage
  • D. between recovery and threat

Answer: C

 

NEW QUESTION 70
Access Control System, CCTV and security guards are form of:

  • A. Physical Security
  • B. Environment Security
  • C. Compliance
  • D. Access Control

Answer: A

 

NEW QUESTION 71
The following are the guidelines to protect your password, except:

  • A. Don't use the same password for various company system security access
  • B. Do not share passwords with anyone
  • C. Change a temporary password on first log-on
  • D. For easy recall, use the same password for company and personal accounts

Answer: B,D

 

NEW QUESTION 72
......

Download Free GAQM ISO-ISMS-LA Real Exam Questions: https://www.realexamfree.com/ISO-ISMS-LA-real-exam-dumps.html