2023 Realistic Verified ISO-IEC-27001-Lead-Auditor exam dumps Q&As - ISO-IEC-27001-Lead-Auditor Free Update [Q55-Q75]

Share

2023 Realistic Verified ISO-IEC-27001-Lead-Auditor exam dumps Q&As - ISO-IEC-27001-Lead-Auditor Free Update

Use Real ISO-IEC-27001-Lead-Auditor Dumps - 100% Free ISO-IEC-27001-Lead-Auditor Exam Dumps


PECB ISO-IEC-27001-Lead-Auditor Exam Syllabus Topics:

TopicDetails
Topic 1
  • Interpret the ISO
  • IEC 27001 requirements for an ISMS from the perspective of an auditor
  • Information Security Management System (ISMS)
Topic 2
  • Managing an ISO
  • IEC 27001 audit program
  • Preparation, Conducting, Closing of an ISO
  • IEC 27001 audit
Topic 3
  • Evaluate the ISMS conformity to ISO
  • IEC 27001 requirements, in accordance with the fundamental audit concepts and principles
Topic 4
  • Plan, conduct, and close an ISO
  • IEC 27001 compliance audit
  • Manage an ISO
  • IEC 27001 audit program
Topic 5
  • Explain the fundamental concepts and principles of an information security management system (ISMS) based on ISO
  • IEC 27001

 

NEW QUESTION 55
What is the relationship between data and information?

  • A. Information is the meaning and value assigned to a collection of data.
  • B. Data is structured information.

Answer: A

 

NEW QUESTION 56
Which of the following is a technical security measure?

  • A. Encryption
  • B. Safe storage of backups
  • C. Security policy
  • D. User role profiles.

Answer: A

 

NEW QUESTION 57
What is the difference between a restricted and confidential document?

  • A. Restricted - to be shared among named individuals
    Confidential - to be shared among an authorized group
  • B. Restricted - to be shared among named individuals
    Confidential - to be shared with friends and family
  • C. Restricted - to be shared among an authorized group
    Confidential - to be shared among named individuals
  • D. Restricted - to be shared among named individuals
    Confidential - to be shared across the organization only

Answer: A

 

NEW QUESTION 58
What is the standard definition of ISMS?

  • A. Is an information security systematic approach to achieve business objectives for implementation, establishing, reviewing,operating and maintaining organization's reputation.
  • B. A systematic approach for establishing, implementing, operating,monitoring, reviewing, maintaining and improving an organization's information security to achieve business objectives.
  • C. A company wide business objectives to achieve information security awareness for establishing, implementing, operating, monitoring, reviewing, maintaining and improving
  • D. A project-based approach to achieve business objectives for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization's information security

Answer: B

 

NEW QUESTION 59
There was a fire in a branch of the company Midwest Insurance. The fire department quickly arrived at the scene and could extinguish the fire before it spread and burned down the entire premises. The server, however, was destroyed in the fire. The backup tapes kept in another room had melted and many other documents were lost for good.
What is an example of the indirect damage caused by this fire?

  • A. Melted backup tapes
  • B. Water damage due to the fire extinguishers
  • C. Burned documents
  • D. Burned computer systems

Answer: B

 

NEW QUESTION 60
Which department maintain's contacts with law enforcement authorities, regulatory bodies, information service providers and telecommunications service providers depending on the service required.

  • A. CISO
  • B. MRO
  • C. CSM
  • D. COO

Answer: A

 

NEW QUESTION 61
Changes on project-managed applications or database should undergo the change control process as documented.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 62
Which of the following does a lack of adequate security controls represent?

  • A. Threat
  • B. Impact
  • C. Vulnerability
  • D. Asset

Answer: C

 

NEW QUESTION 63
Someone from a large tech company calls you on behalf of your company to check the health of your PC, and therefore needs your user-id and password. What type of threat is this?

  • A. Malware threat
  • B. Technical threat
  • C. Organisational threat
  • D. Social engineering threat

Answer: D

 

NEW QUESTION 64
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 65
What is a repressive measure in case of a fire?

  • A. Putting out a fire after it has been detected by a fire detector
  • B. Taking out a fire insurance
  • C. Repairing damage caused by the fire

Answer: A

 

NEW QUESTION 66
The following are purposes of Information Security, except:

  • A. Increase Business Assets
  • B. Maximize Return on Investment
  • C. Ensure Business Continuity
  • D. Minimize Business Risk

Answer: A

 

NEW QUESTION 67
After a devastating office fire, all staff are moved to other branches of the company. At what moment in the incident management process is this measure effectuated?

  • A. Between detection and classification
  • B. Between classification and escalation
  • C. Between recovery and normal operations
  • D. Between incident and damage

Answer: D

 

NEW QUESTION 68
Access Control System, CCTV and security guards are form of:

  • A. Physical Security
  • B. Environment Security
  • C. Compliance
  • D. Access Control

Answer: A

 

NEW QUESTION 69
-------------------------is an asset like other important business assets has value to an organization and consequently needs to be protected.

  • A. Data
  • B. Infrastructure
  • C. Security
  • D. Information

Answer: D

 

NEW QUESTION 70
The following are the guidelines to protect your password, except:

  • A. Do not share passwords with anyone
  • B. Change a temporary password on first log-on
  • C. Don't use the same password for various company system security access
  • D. For easy recall, use the same password for company and personal accounts

Answer: A,D

 

NEW QUESTION 71
What would be the reference for you to know who should have access to data/document?

  • A. Information Rights Management (IRM)
  • B. Data Classification Label
  • C. Access Control List (ACL)
  • D. Masterlist of Project Records (MLPR)

Answer: C

 

NEW QUESTION 72
Cabling Security is associated with Power, telecommunication and network cabling carrying information are protected from interception and damage.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 73
A property of Information that has the ability to prove occurrence of a claimed event.

  • A. Electronic chain letters
  • B. Accessibility
  • C. Integrity
  • D. Availability

Answer: C

 

NEW QUESTION 74
Which of the following does an Asset Register contain? (Choose two)

  • A. Process ID
  • B. Asset Modifier
  • C. Asset Owner
  • D. Asset Type

Answer: C,D

 

NEW QUESTION 75
......

Pass ISO-IEC-27001-Lead-Auditor exam Updated 99 Questions: https://www.dumpstorrent.com/ISO-IEC-27001-Lead-Auditor-exam-dumps-torrent.html

ISO-IEC-27001-Lead-Auditor Exam Dumps, Test Engine Practice Test Questions: https://drive.google.com/open?id=1nHAIcpYiB23PiFNVrY4l7VbPnGWsXjuO