
UPDATED [2023] Pass PECB ISO-IEC-27001-Lead-Implementer Exam in First Attempt Guaranteed
Pass ISO-IEC-27001-Lead-Implementer Exam Latest Practice Questions
The exam covers various topics related to information security management, including the principles and concepts of information security, risk management, and the implementation and maintenance of an ISMS. It also tests the candidates' ability to assess and manage information security risks, develop and implement security controls, and monitor and improve the effectiveness of the ISMS. The exam is designed to evaluate the candidates' competence in implementing and maintaining an effective ISMS based on the ISO/IEC 27001 standard.
The PECB ISO-IEC-27001-Lead-Implementer certification exam is intended for professionals who are responsible for managing and implementing an ISMS in an organization. This includes IT professionals, security managers, risk management professionals, and other individuals who are involved in the implementation and management of an ISMS. The exam is also suitable for individuals who are seeking to enhance their knowledge and understanding of the ISO/IEC 27001 standard.
NEW QUESTION # 17
What should be used to protect data on removable media ifdata confidentiality or integrity are important considerations?
- A. logging
- B. a password
- C. cryptographic techniques
- D. backup on another removable medium
Answer: C
NEW QUESTION # 18
One of the ways Internet of Things (IoT) devices can communicate with each other (or 'the outside world') is using a so-called short-range radio protocol. Which kind of short-range radio protocol makes it possible to use your phone as a credit card?
- A. Bluetooth
- B. The 4G protocol
- C. Radio Frequency Identification (RFID)
- D. Near Field Communication (NFC)
Answer: D
NEW QUESTION # 19
Select risk control activities for domain "10. Encryption" of ISO / 27002: 2013 (Choose two)
- A. Cryptographic Controls Use Policy
- B. Physical security perimeter
- C. Work in safe areas
- D. Key management
Answer: A,D
NEW QUESTION # 20
What is the best description of a risk analysis?
- A. A risk analysis helps to estimate the risks and develop the appropriate security measures.
- B. A risk analysis calculates the exact financial consequences of damages.
- C. A risk analysis is a method of mapping risks without looking at company processes.
Answer: A
NEW QUESTION # 21
You are the owner of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks. What is this risk strategy called?
- A. Risk neutral
- B. Risk passing
- C. Risk bearing
- D. Risk avoiding
Answer: A
NEW QUESTION # 22
What is the most important reason for applying the segregation of duties?
- A. Segregation of duties makes it clear who is responsible for what.
- B. Segregation of duties makes it easier for a person who is readywith his or her part of the work to take time off or to take over the work of another person.
- C. Segregation of duties ensures that, when a person is absent, it can be investigated whether he or she has been committing fraud.
- D. Tasks and responsibilities must be separated in order to minimize the opportunities for business assets to be misused or changed, whether the change be unauthorized or unintentional.
Answer: D
NEW QUESTION # 23
Which of these control objectives are NOT in the domain "12.OPERATIONAL SAFETY"?
- A. Test data
- B. Redundancies
- C. Protection against malicious code
- D. Technical vulnerability management
Answer: B
NEW QUESTION # 24
What is the ISO / IEC 27002 standard?
- A. It is a guide of good practices that describes the controlobjectives and recommended controls regarding information security.
- B. It is a guide that focuses on the critical aspects necessary for the successful design and implementation of an ISMS in accordance with ISO / IEC 27001
- C. It is a guide for the development and use of applicable metrics and measurement techniques to determine the effectiveness of an ISMS and the controls or groups of controls implemented according to ISO / IEC 27001.
Answer: A
NEW QUESTION # 25
In the context ofcontact with special interest groups, any information-sharing agreements should identify requirements for the protection of _________ information.
- A. Authentic
- B. Authorization
- C. Confidential
- D. Availability
Answer: C
NEW QUESTION # 26
Responsibilities for information security in projects should be defined and allocated to:
- A. the owner of the involved asset
- B. the InfoSec officer
- C. specified roles defined in the used project management method of the organization
- D. the project manager
Answer: C
NEW QUESTION # 27
Prior to employment, _________ as well as terms & conditions of employment are included as controls in ISO
27002 to ensure that employees and contractors understand their responsibilities and are suitable for the roles for which they are considered.
- A. flexing
- B. controlling
- C. screening
- D. authorizing
Answer: C
NEW QUESTION # 28
What does the Information Security Policy describe?
- A. what the implementation-planning of the information security management system is
- B. which InfoSec-controls have been selected and taken
- C. which Information Security-procedures are selected
- D. how the InfoSec-objectives will be reached
Answer: D
NEW QUESTION # 29
What are the data protection principles set out in the GDPR?
- A. Purpose limitation, proportionality, data minimisation, transparency
- B. Purpose limitation, proportionality, availability, data minimisation
- C. Purpose limitation, pudicity, transparency, data minimisation
- D. Target group, proportionality, transparency, data minimisation
Answer: A
NEW QUESTION # 30
What is an example of a security incident?
- A. You cannot set the correct fonts in your word processing software.
- B. A file is saved under an incorrect name.
- C. A member of staff loses a laptop.
- D. The lighting in the department no longer works.
Answer: C
NEW QUESTION # 31
What is an example of a non-human threat to the physical environment?
- A. Fraudulent transaction
- B. Corrupted file
- C. Storm
- D. Virus
Answer: C
NEW QUESTION # 32
We can acquire and supply information in various ways. The value of the information depends on whether it is reliable. What are the reliability aspects of information?
- A. Availability, Integrity and Confidentiality
- B. Availability, Integrity and Completeness
- C. Availability, Information Value and Confidentiality
- D. Timeliness, Accuracy and Completeness
Answer: A
NEW QUESTION # 33
Susan sends an email to Paul. Who determines the meaning and the value of information in this email?
- A. Paul and Susan, the sender and the recipient of the information.
- B. Susan, the sender of the information.
- C. Paul, therecipient of the information.
Answer: C
NEW QUESTION # 34
You are a consultant and areregularly hired by the Ministry of Defense to perform analysis. Since the assignments are irregular, you outsource the administration of your business to temporary workers. You don't want the temporary workers to have access to your reports.
Which reliability aspect of the information in your reports must you protect?
- A. Confidentiality
- B. Integrity
- C. Availability
Answer: A
NEW QUESTION # 35
......
PECB ISO-IEC-27001-Lead-Implementer Study Guide Archives : https://www.actualtestsquiz.com/ISO-IEC-27001-Lead-Implementer-test-torrent.html
Download ISO-IEC-27001-Lead-Implementer Mock Test Study Material: https://drive.google.com/open?id=1HB6XJcCzAe0QQe0F7hJBAVDHatiBZ_fG

