
Best Quality ISO-ISMS-LA Exam Questions GAQM Test To Gain Brilliante Result!
Preparations of ISO-ISMS-LA Exam 2022 GAQM: ISO Unlimited 99 Questions
NEW QUESTION 58
__________ is a software used or created by hackers to disrupt computer operation, gather sensitive information, or gain access to private computer systems.
- A. Malware
- B. Virus
- C. Trojan
- D. Operating System
Answer: A
NEW QUESTION 59
You are the lead auditor of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?
- A. Risk skipping
- B. Risk neutral
- C. Risk bearing
- D. Risk avoidance
Answer: C
NEW QUESTION 60
Phishing is what type of Information Security Incident?
- A. Private Incidents
- B. Legal Incidents
- C. Cracker/Hacker Attacks
- D. Technical Vulnerabilities
Answer: C
NEW QUESTION 61
You receive the following mail from the IT support team: Dear User,Starting next week, we will be deleting all inactive email accounts in order to create spaceshare the below details in order to continue using your account. In case of no response, Name:
Email ID:
Password:
DOB:
Kindly contact the webmail team for any further support. Thanks for your attention.
Which of the following is the best response?
- A. One should not respond to these mails and report such email to your supervisor
- B. Respond it by saying that one should not share the password with anyone
- C. Ignore the email
Answer: A
NEW QUESTION 62
How is the purpose of information security policy best described?
- A. An information security policy provides direction and support to the management regarding information security.
- B. An information security policy makes the security plan concrete by providing it with the necessary details.
- C. An information security policy provides insight into threats and the possible consequences.
- D. An information security policy documents the analysis of risks and the search for countermeasures.
Answer: A
NEW QUESTION 63
Integrity of data means
- A. Data should be accessed by only the right people
- B. Data should be viewable at all times
- C. Accuracy and completeness of the data
Answer: C
NEW QUESTION 64
What is the difference between a restricted and confidential document?
- A. Restricted - to be shared among an authorized group
Confidential - to be shared among named individuals - B. Restricted - to be shared among named individuals
Confidential - to be shared across the organization only - C. Restricted - to be shared among named individuals
Confidential - to be shared with friends and family - D. Restricted - to be shared among named individuals
Confidential - to be shared among an authorized group
Answer: D
NEW QUESTION 65
A decent visitor is roaming around without visitor's ID. As an employee you should do the following, except:
- A. Greet and ask him what is his business
- B. Say "hi" and offer coffee
- C. Escort him to his destination
- D. Call the receptionist and inform about the visitor
Answer: B
NEW QUESTION 66
What type of compliancy standard, regulation or legislation provides a code of practice for information security?
- A. Personal data protection act
- B. ISO/IEC 27002
- C. IT Service Management
- D. Computer criminality act
Answer: B
NEW QUESTION 67
Who is responsible for Initial asset allocation to the user/custodian of the assets?
- A. Asset Owner
- B. Asset Stakeholder
- C. Asset Manager
- D. Asset Practitioner
Answer: A
NEW QUESTION 68
Availability means
- A. Service should not be accessible when required
- B. Service should be accessible at the required time and usable only by the authorized entity
- C. Service should be accessible at the required time and usable by all
Answer: B
NEW QUESTION 69
The following are definitions of Information, except:
- A. accurate and timely data
- B. can lead to understanding and decrease in uncertainty
- C. specific and organized data for a purpose
- D. mature and measurable data
Answer: D
NEW QUESTION 70
Which of the following factors does NOT contribute to the value of data for an organisation?
- A. The importance of data for processes
- B. The content of data
- C. The correctness of data
- D. The indispensability of data
Answer: B
NEW QUESTION 71
Which is the glue that ties the triad together
- A. Process
- B. Collaboration
- C. Technology
- D. People
Answer: A
NEW QUESTION 72
A scenario wherein the city or location where the building(s) reside is / are not accessible.
- A. City
- B. Component
- C. Facility
- D. Country
Answer: A
NEW QUESTION 73
A hacker gains access to a webserver and can view a file on the server containing credit card numbers.
Which of the Confidentiality, Integrity, Availability (CIA) principles of the credit card file are violated?
- A. Compliance
- B. Confidentiality
- C. Availability
- D. Integrity
Answer: B
NEW QUESTION 74
A planning process that introduced the concept of planning as a cycle that forms the basis for continuous improvement is called:
- A. planning for continuous improvement.
- B. plan, do, check, act.
- C. RACI Matrix
- D. time based planning.
Answer: B
NEW QUESTION 75
There is a network printer in the hallway of the company where you work. Many employees don't pick up their printouts immediately and leave them on the printer.
What are the consequences of this to the reliability of the information?
- A. The confidentiality of the information is no longer guaranteed.
- B. The integrity of the information is no longer guaranteed.
- C. The Security of the information is no longer guaranteed.
- D. The availability of the information is no longer guaranteed.
Answer: D
NEW QUESTION 76
Someone from a large tech company calls you on behalf of your company to check the health of your PC, and therefore needs your user-id and password. What type of threat is this?
- A. Social engineering threat
- B. Malware threat
- C. Technical threat
- D. Organisational threat
Answer: A
NEW QUESTION 77
Stages of Information
- A. creation, distribution, use, maintenance, disposition
- B. creation, distribution, maintenance, disposition, use
- C. creation, evolution, maintenance, use, disposition
- D. creation, use, disposition, maintenance, evolution
Answer: A
NEW QUESTION 78
A property of Information that has the ability to prove occurrence of a claimed event.
- A. Accessibility
- B. Availability
- C. Integrity
- D. Electronic chain letters
Answer: C
NEW QUESTION 79
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?
- A. a repressive security measure
- B. a corrective security measure
- C. a physical security measure
- D. a logical security measure
Answer: C
NEW QUESTION 80
An employee caught temporarily storing an MP3 file in his workstation will not receive an IR.
- A. False
- B. True
Answer: A
NEW QUESTION 81
A fire breaks out in a branch office of a health insurance company. The personnel are transferred to neighboring branches to continue their work.
Where in the incident cycle is moving to a stand-by arrangements found?
- A. between incident and damage
- B. between threat and incident
- C. between recovery and threat
- D. between damage and recovery
Answer: A
NEW QUESTION 82
An employee caught with offense of abusing the internet, such as P2P file sharing or video/audio streaming, will not receive a warning for committing such act but will directly receive an IR.
- A. False
- B. True
Answer: B
NEW QUESTION 83
......
Focus on ISO-ISMS-LA All-in-One Exam Guide For Quick Preparation: https://www.testkingpdf.com/ISO-ISMS-LA-testking-pdf-torrent.html

