
Get instant access to ISO-IEC-LI Practice Tests 2021 Free Updated Today!
Welcome to download the newest PassLeader ISO-IEC-LI PDF dumps ( 50 Q&As)
NEW QUESTION 23
What is the best way to comply with legislation and regulations for personal data protection?
- A. Maintaining an incident register
- B. Appointing the responsibility to someone
- C. Performing a vulnerability analysis
- D. Performing a threat analysis
Answer: B
NEW QUESTION 24
Select risk control activities for domain "10. Encryption" of ISO / 27002: 2013 (Choose two)
- A. Physical security perimeter
- B. Work in safe areas
- C. Cryptographic Controls Use Policy
- D. Key management
Answer: C,D
NEW QUESTION 25
What is the most important reason for applying the segregation of duties?
- A. Segregation of duties makes it easier for a person who is ready with his or her part of the work to take time off or to take over the work of another person.
- B. Segregation of duties makes it clear who is responsible for what.
- C. Tasks and responsibilities must be separated in order to minimize the opportunities for business assets to be misused or changed, whether the change be unauthorized or unintentional.
- D. Segregation of duties ensures that, when a person is absent, it can be investigated whether he or she has been committing fraud.
Answer: C
NEW QUESTION 26
The identified owner of an asset is always an individual
- A. False
- B. True
Answer: A
NEW QUESTION 27
You have just started working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?
- A. A code of conduct gives staff guidance on how to report suspected misuses of IT facilities.
- B. A code of conduct prevents a virus outbreak.
- C. A code of conduct helps to prevent the misuse of IT facilities.
- D. A code of conduct is a legal obligation that organizations have to meet.
Answer: C
NEW QUESTION 28
What is the best description of a risk analysis?
- A. A risk analysis calculates the exact financial consequences of damages.
- B. A risk analysis helps to estimate the risks and develop the appropriate security measures.
- C. A risk analysis is a method of mapping risks without looking at company processes.
Answer: B
NEW QUESTION 29
What is the ISO / IEC 27002 standard?
- A. It is a guide that focuses on the critical aspects necessary for the successful design and implementation of an ISMS in accordance with ISO / IEC 27001
- B. It is a guide of good practices that describes the control objectives and recommended controls regarding information security.
- C. It is a guide for the development and use of applicable metrics and measurement techniques to determine the effectiveness of an ISMS and the controls or groups of controls implemented according to ISO / IEC 27001.
Answer: B
NEW QUESTION 30
Companies use 27002 for compliance for which of the following reasons:
- A. Compliance with ISO 27002 is sufficient to comply with all regulations
- B. A structured program that helps with security and compliance
- C. Explicit requirements for all regulations
Answer: B
NEW QUESTION 31
Of the following, which is the best organization or set of organizations to contribute to compliance?
- A. IT only
- B. IT, business management, HR and legal
- C. IT and legal
- D. IT and management
Answer: B
NEW QUESTION 32
What should be used to protect data on removable media if data confidentiality or integrity are important considerations?
- A. backup on another removable medium
- B. logging
- C. cryptographic techniques
- D. a password
Answer: C
NEW QUESTION 33
What sort of security does a Public Key Infrastructure (PKI) offer?
- A. By providing agreements, procedures and an organization structure, a PKI defines which person or which system belongs to which specific public key.
- B. A PKI ensures that backups of company data are made on a regular basis.
- C. It provides digital certificates that can be used to digitally sign documents. Such signatures irrefutably determine from whom a document was sent.
- D. Having a PKI shows customers that a web-based business is secure.
Answer: B
NEW QUESTION 34
What are the data protection principles set out in the GDPR?
- A. Purpose limitation, proportionality, availability, data minimisation
- B. Target group, proportionality, transparency, data minimisation
- C. Purpose limitation, proportionality, data minimisation, transparency
- D. Purpose limitation, pudicity, transparency, data minimisation
Answer: C
NEW QUESTION 35
Why is compliance important for the reliability of the information?
- A. By meeting the legislative requirements and the regulations of both the government and internal management, an organization shows that it manages its information in a sound manner.
- B. When an organization is compliant, it meets the requirements of privacy legislation and, in doing so, protects the reliability of its information.
- C. Compliance is another word for reliability. So, if a company indicates that it is compliant, it means that the information is managed properly.
- D. When an organization employs a standard such as the ISO/IEC 27002 and uses it everywhere, it is compliant and therefore it guarantees the reliability of its information.
Answer: A
NEW QUESTION 36
Who is authorized to change the classification of a document?
- A. The owner of the document
- B. The manager of the owner of the document
- C. The administrator of the document
- D. The author of the document
Answer: A
NEW QUESTION 37
Susan sends an email to Paul. Who determines the meaning and the value of information in this email?
- A. Susan, the sender of the information.
- B. Paul and Susan, the sender and the recipient of the information.
- C. Paul, the recipient of the information.
Answer: C
NEW QUESTION 38
......
Sep-2021 Latest Exam4Tests ISO-IEC-LI Exam Dumps with PDF and Exam Engine: https://www.exam4tests.com/ISO-IEC-LI-valid-braindumps.html