[Q30-Q54] Use Real ISFS - 100% Cover Real Exam Questions [Sep-2021]

Share

Use Real ISFS - 100% Cover Real Exam Questions [Sep-2021] 

Dumps Brief Outline Of The ISFS Exam - TestkingPDF

NEW QUESTION 30
What do employees need to know to report a security incident?

  • A. Whether the incident has occurred before and what was the resulting damage.
  • B. Who is responsible for the incident and whether it was intentional.
  • C. How to report an incident and to whom.
  • D. The measures that should have been taken to prevent the incident in the first place.

Answer: C

 

NEW QUESTION 31
You are the first to arrive at work in the morning and notice that the CD ROM on which you saved contracts yesterday has disappeared. You were the last to leave yesterday. When should you report this information security incident?

  • A. You should wait a few days before reporting this incident. The CD ROM can still reappear and, in that case, you will have made a fuss for nothing.
  • B. You should first investigate this incident yourself and try to limit the damage.
  • C. This incident should be reported immediately.

Answer: C

 

NEW QUESTION 32
There is a network printer in the hallway of the company where you work. Many employees dont pick up their printouts immediately and leave them in the printer. What are the consequences of this to the reliability of the information?

  • A. The confidentiality of the information is no longer guaranteed.
  • B. The integrity of the information is no longer guaranteed.
  • C. The availability of the information is no longer guaranteed.

Answer: A

Explanation:
Explanation

 

NEW QUESTION 33
My user profile specifies which network drives I can read and write to. What is the name of the type of logical access management wherein my access and rights are determined centrally?

  • A. Public Key Infrastructure (PKI)
  • B. Mandatory Access Control (MAC)
  • C. Discretionary Access Control (DAC)

Answer: B

 

NEW QUESTION 34
What is the best description of a risk analysis?

  • A. A risk analysis calculates the exact financial consequences of damages.
  • B. A risk analysis helps to estimate the risks and develop the appropriate security measures.
  • C. A risk analysis is a method of mapping risks without looking at company processes.

Answer: B

 

NEW QUESTION 35
Midwest Insurance controls access to its offices with a passkey system. We call this a preventive measure. What are some other measures?

  • A. Repressive, adaptive and corrective measures
  • B. Detective, repressive and corrective measures
  • C. Partial, adaptive and corrective measures

Answer: B

 

NEW QUESTION 36
At Midwest Insurance, all information is classified. What is the goal of this classification of information?

  • A. Structuring information according to its sensitivity
  • B. Applying labels making the information easier to recognize
  • C. To create a manual about how to handle mobile devices

Answer: A

 

NEW QUESTION 37
Which is a legislative or regulatory act related to information security that can be imposed upon all organizations?

  • A. ISO/IEC 27001:2005
  • B. ISO/IEC 27002:2005
  • C. Personal data protection legislation
  • D. Intellectual Property Rights

Answer: C

 

NEW QUESTION 38
Why is air-conditioning placed in the server room?

  • A. It is not pleasant for the maintenance staff to have to work in a server room that is too warm.
  • B. Backup tapes are made from thin plastic which cannot withstand high temperatures. Therefore, if it gets too hot in a server room, they may get damaged.
  • C. When a company wishes to cool its offices, the server room is the best place. This way, no office space needs to be sacrificed for such a large piece of equipment.
  • D. In the server room the air has to be cooled and the heat produced by the equipment has to be extracted.
    The air in the room is also dehumidified and filtered.

Answer: D

 

NEW QUESTION 39
You have an office that designs corporate logos. You have been working on a draft for a large client. Just as you are going to press the <save> button, the screen goes blank. The hard disk is damaged and cannot be repaired. You find an early version of the design in your mail folder and you reproduce the draft for the customer. What is such a measure called?

  • A. Corrective measure
  • B. Reductive measure
  • C. Preventive measure

Answer: A

 

NEW QUESTION 40
Midwest Insurance grades the monthly report of all claimed losses per insured as confidential. What is accomplished if all other reports from this insurance office are also assigned the appropriate grading?

  • A. Everyone can easiliy see how sensitive the reports' contents are by consulting the grading label.
  • B. A determination can be made as to which report should be printed first and which one can wait a little longer.
  • C. The costs for automating are easier to charge to the responsible departments.
  • D. Reports can be developed more easily and with fewer errors.

Answer: A

 

NEW QUESTION 41
You work in the office of a large company. You receive a call from a person claiming to be from the Helpdesk. He asks you for your password. What kind of threat is this?

  • A. Organizational threat
  • B. Social Engineering
  • C. Natural threat

Answer: B

 

NEW QUESTION 42
Who is authorized to change the classification of a document?

  • A. The owner of the document
  • B. The manager of the owner of the document
  • C. The administrator of the document
  • D. The author of the document

Answer: A

 

NEW QUESTION 43
A Dutch company requests to be listed on the American Stock Exchange. Which legislation within the scope of information security is relevant in this case?

  • A. Dutch Tax Law
  • B. Public Records Act
  • C. Security regulations for the Dutch government
  • D. Sarbanes-Oxley Act

Answer: D

 

NEW QUESTION 44
An employee in the administrative department of Smiths Consultants Inc. finds out that the expiry date of a contract with one of the clients is earlier than the start date. What type of measure could prevent this error?

  • A. Integrity measure
  • B. Availability measure
  • C. Technical measure
  • D. Organizational measure

Answer: C

Explanation:
Explanation/Reference:

 

NEW QUESTION 45
What is a human threat to the reliability of the information on your company website?

  • A. Because of a lack of maintenance, a fire hydrant springs a leak and floods the premises. Your employees cannot come into the office and therefore can not keep the information on the website up to date.
  • B. The computer hosting your website is overloaded and crashes. Your website is offline.
  • C. One of your employees commits an error in the price of a product on your website.

Answer: C

 

NEW QUESTION 46
You are the owner of the SpeeDelivery courier service. Last year you had a firewall installed. You now discover that no maintenance has been performed since the installation. What is the biggest risk because of this?

  • A. The risk of undesired e-mails
  • B. The risk that fire may break out in the server room
  • C. The risk that hackers can do as they wish on the network without detection
  • D. The risk of a virus outbreak

Answer: C

 

NEW QUESTION 47
Your company is in the news as a result of an unfortunate action by one of your employees. The phones are ringing off the hook with customers wanting to cancel their contracts. What do we call this type of damage?

  • A. Indirect damage
  • B. Direct damage

Answer: A

 

NEW QUESTION 48
Which of these is not malicious software?

  • A. Worm
  • B. Spyware
  • C. Phishing
  • D. Virus

Answer: C

 

NEW QUESTION 49
A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the companys staff. Which kind of security measure could have prevented this?

  • A. A technical security measure
  • B. An organizational security measure
  • C. A physical security measure

Answer: C

 

NEW QUESTION 50
What is the best way to comply with legislation and regulations for personal data protection?

  • A. Maintaining an incident register
  • B. Appointing the responsibility to someone
  • C. Performing a vulnerability analysis
  • D. Performing a threat analysis

Answer: B

 

NEW QUESTION 51
You work in the IT department of a medium-sized company. Confidential information has got into the wrong hands several times. This has hurt the image of the company. You have been asked to propose organizational security measures for laptops at your company. What is the first step that you should take?

  • A. Set up an access control policy
  • B. Appoint security personnel
  • C. Encrypt the hard drives of laptops and USB sticks
  • D. Formulate a policy regarding mobile media (PDAs, laptops, smartphones, USB sticks)

Answer: D

 

NEW QUESTION 52
What sort of security does a Public Key Infrastructure (PKI) offer?

  • A. A PKI ensures that backups of company data are made on a regular basis.
  • B. It provides digital certificates which can be used to digitally sign documents. Such signatures irrefutably determine from whom a document was sent.
  • C. By providing agreements, procedures and an organization structure, a PKI defines which person or which system belongs to which specific public key.
  • D. Having a PKI shows customers that a web-based business is secure.

Answer: C

 

NEW QUESTION 53
What is a risk analysis used for?

  • A. A risk analysis is used to express the value of information for an organization in monetary terms.
  • B. A risk analysis is used in conjunction with security measures to reduce risks to an acceptable level.
  • C. A risk analysis is used to ensure that security measures are deployed in a cost-effective and timely fashion.
  • D. A risk analysis is used to clarify to management their responsibilities.

Answer: C

 

NEW QUESTION 54
......

Certification Training for ISFS Exam Dumps Test Engine: https://www.testkingpdf.com/ISFS-testking-pdf-torrent.html

ISFS Training & Certification Get Latest Exin Certification : https://drive.google.com/open?id=1_6mbY3AJEFjLSC4G266irV7x6BVeKRec