[Q38-Q58] Ultimate Guide to Prepare ISO-ISMS-LA with Accurate PDF Questions [Oct 26, 2021]

Share

Ultimate Guide to Prepare ISO-ISMS-LA with Accurate PDF Questions [Oct 26, 2021]

Pass GAQM With ExamPrepAway Exam Dumps

NEW QUESTION 38
What type of compliancy standard, regulation or legislation provides a code of practice for information security?

  • A. Personal data protection act
  • B. ISO/IEC 27002
  • C. Computer criminality act
  • D. IT Service Management

Answer: B

 

NEW QUESTION 39
You see a blue color sticker on certain physical assets. What does this signify?

  • A. The asset is very high critical and its failure affects the entire organization
  • B. The asset is critical and the impact is restricted to an employee only
  • C. The asset with blue stickers should be kept air conditioned at all times
  • D. The asset is high critical and its failure will affect a group/s/project's work in the organization

Answer: D

 

NEW QUESTION 40
All are prohibited in acceptable use of information assets, except:

  • A. Messages with very large attachments or to a large number ofrecipients.
  • B. E-mail copies to non-essential readers
  • C. Company-wide e-mails with supervisor/TL permission.
  • D. Electronic chain letters

Answer: C

 

NEW QUESTION 41
There was a fire in a branch of the company Midwest Insurance. The fire department quickly arrived at the scene and could extinguish the fire before it spread and burned down the entire premises. The server, however, was destroyed in the fire. The backup tapes kept in another room had melted and many other documents were lost for good.
What is an example of the indirect damage caused by this fire?

  • A. Melted backup tapes
  • B. Burned documents
  • C. Water damage due to the fire extinguishers
  • D. Burned computer systems

Answer: C

 

NEW QUESTION 42
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?

  • A. a logical security measure
  • B. a corrective security measure
  • C. a repressive security measure
  • D. a physical security measure

Answer: D

 

NEW QUESTION 43
A member of staff denies sending a particular message.
Which reliability aspect of information is in danger here?

  • A. availability
  • B. correctness
  • C. integrity
  • D. confidentiality

Answer: C

 

NEW QUESTION 44
What is the goal of classification of information?

  • A. Structuring information according to its sensitivity
  • B. To create a manual about how to handle mobile devices
  • C. Applying labels making the information easier to recognize

Answer: A

 

NEW QUESTION 45
In order to take out a fire insurance policy, an administration office must determine the value of the data that it manages.
Which factor is [b]not[/b] important for determining the value of data for an organization?

  • A. The importance of the business processes that make use of the data.
  • B. The content of data.
  • C. The degree to which missing, incomplete or incorrect data can be recovered.
  • D. The indispensability of data for the business processes.

Answer: B

 

NEW QUESTION 46
After a devastating office fire, all staff are moved to other branches of the company. At what moment in the incident management process is this measure effectuated?

  • A. Between detection and classification
  • B. Between incident and damage
  • C. Between recovery and normal operations
  • D. Between classification and escalation

Answer: B

 

NEW QUESTION 47
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 48
Changes on project-managed applications or database should undergo the change control process as documented.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 49
You are the lead auditor of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?

  • A. Risk skipping
  • B. Risk bearing
  • C. Risk neutral
  • D. Risk avoidance

Answer: B

 

NEW QUESTION 50
Information or data that are classified as ______ do not require labeling.

  • A. Highly Confidential
  • B. Internal
  • C. Confidential
  • D. Public

Answer: D

 

NEW QUESTION 51
Backup media is kept in the same secure area as the servers. What risk may the organisation be exposed to?

  • A. After a server crash, it will take extra time to bring it back up again
  • B. Unauthorised persons will have access to both the servers and backups
  • C. After a fire, the information systems cannot be restored
  • D. Responsibility for the backups is not defined well

Answer: C

 

NEW QUESTION 52
What is a reason for the classification of information?

  • A. To structure the information according to its sensitivity
  • B. Creating a manual describing the BYOD policy
  • C. To provide clear identification tags

Answer: A

 

NEW QUESTION 53
A fire breaks out in a branch office of a health insurance company. The personnel are transferred to neighboring branches to continue their work.
Where in the incident cycle is moving to a stand-by arrangements found?

  • A. between threat and incident
  • B. between recovery and threat
  • C. between damage and recovery
  • D. between incident and damage

Answer: D

 

NEW QUESTION 54
Which department maintain's contacts with law enforcement authorities, regulatory bodies, information service providers and telecommunications service providers depending on the service required.

  • A. MRO
  • B. COO
  • C. CISO
  • D. CSM

Answer: C

 

NEW QUESTION 55
The following are purposes of Information Security, except:

  • A. Ensure Business Continuity
  • B. Maximize Return on Investment
  • C. Increase Business Assets
  • D. Minimize Business Risk

Answer: C

 

NEW QUESTION 56
Which of the following is a preventive security measure?

  • A. Shutting down the Internet connection after an attack
  • B. Installing logging and monitoring software
  • C. Storing sensitive information in a data save

Answer: C

 

NEW QUESTION 57
You work in the office of a large company. You receive a call from a person claiming to be from the Helpdesk. He asks you for your password.
What kind of threat is this?

  • A. Organizational threat
  • B. Social Engineering
  • C. Arason
  • D. Natural threat

Answer: B

 

NEW QUESTION 58
......

Latest ISO-ISMS-LA Exam Dumps - Valid and Updated Dumps: https://www.examprepaway.com/GAQM/braindumps.ISO-ISMS-LA.ete.file.html