
[Dec 22, 2021] Fully Updated ISO-ISMS-LA Dumps - 100% Same Q&A In Your Real Exam
Latest ISO-ISMS-LA Exam Dumps - Valid and Updated Dumps
NEW QUESTION 35
An administration office is going to determine the dangers to which it is exposed.
What do we call a possible event that can have a disruptive effect on the reliability of information?
- A. risk
- B. threat
- C. vulnerability
- D. dependency
Answer: B
NEW QUESTION 36
The computer room is protected by a pass reader. Only the System Management department has a pass.
What type of security measure is this?
- A. a repressive security measure
- B. a corrective security measure
- C. a physical security measure
- D. a logical security measure
Answer: C
NEW QUESTION 37
A well-executed risk analysis provides a great deal of useful information. A risk analysis has four main objectives.
What is not one of the four main objectives of a risk analysis?
- A. Implementing counter measures
- B. Identifying assets and their value
- C. Determining relevant vulnerabilities and threats
- D. Establishing a balance between the costs of an incident and the costs of a security measure
Answer: A
NEW QUESTION 38
Backup media is kept in the same secure area as the servers. What risk may the organisation be exposed to?
- A. Unauthorised persons will have access to both the servers and backups
- B. Responsibility for the backups is not defined well
- C. After a server crash, it will take extra time to bring it back up again
- D. After a fire, the information systems cannot be restored
Answer: D
NEW QUESTION 39
Stages of Information
- A. creation, distribution, use, maintenance, disposition
- B. creation, distribution, maintenance, disposition, use
- C. creation, evolution, maintenance, use, disposition
- D. creation, use, disposition, maintenance, evolution
Answer: A
NEW QUESTION 40
Which of the following is a possible event that can have a disruptive effect on the reliability of information?
- A. Risk
- B. Threat
- C. Vulnerability
- D. Dependency
Answer: B
NEW QUESTION 41
How is the purpose of information security policy best described?
- A. An information security policy provides direction and support to the management regarding information security.
- B. An information security policy makes the security plan concrete by providing it with the necessary details.
- C. An information security policy provides insight into threats and the possible consequences.
- D. An information security policy documents the analysis of risks and the search for countermeasures.
Answer: A
NEW QUESTION 42
Below is Purpose of "Integrity", which is one of the Basic Components of Information Security
- A. the property of safeguarding the accuracy and completeness of assets.
- B. the property that information is not made available or disclosed to unauthorized individuals
- C. the property that information is not made available or disclosed to unauthorized individuals
- D. the property of being accessible and usable upon demand by an authorized entity.
Answer: A
NEW QUESTION 43
Changes on project-managed applications or database should undergo the change control process as documented.
- A. False
- B. True
Answer: B
NEW QUESTION 44
A hacker gains access to a webserver and can view a file on the server containing credit card numbers.
Which of the Confidentiality, Integrity, Availability (CIA) principles of the credit card file are violated?
- A. Compliance
- B. Confidentiality
- C. Availability
- D. Integrity
Answer: B
NEW QUESTION 45
Which of the following is not a type of Information Security attack?
- A. Privacy Incidents
- B. Vehicular Incidents
- C. Legal Incidents
- D. Technical Vulnerabilities
Answer: B
NEW QUESTION 46
In which order is an Information Security Management System set up?
- A. Establishment, implementation, operation, maintenance
- B. Establishment, operation, monitoring, improvement
- C. Implementation, operation, improvement, maintenance
- D. Implementation, operation, maintenance, establishment
Answer: A
NEW QUESTION 47
You receive an E-mail from some unknown person claiming to be representative of your bank and asking for your account number and password so that they can fix your account. Such an attempt of social engineering is called
- A. Phishing
- B. Spoofing
- C. Shoulder Surfing
- D. Mountaineering
Answer: A
NEW QUESTION 48
Information has a number of reliability aspects. Reliability is constantly being threatened. Examples of threats are: a cable becomes loose, someone alters information by accident, data is used privately or is falsified.
Which of these examples is a threat to integrity?
- A. accidental alteration of data
- B. private use of data
- C. a loose cable
- D. System restart
Answer: A
NEW QUESTION 49
What controls can you do to protect sensitive data in your computer when you go out for lunch?
- A. You lock your computer by pressing Windows+L or CTRL-ALT-DELETE and then click "Lock Computer".
- B. You turn off the monitor
- C. You activate your favorite screen-saver
- D. You are confident to leave your computer screen as is since a password protected screensaver is installed and it is set to activate after 10 minutes of inactivity
Answer: A
NEW QUESTION 50
Which of the following does a lack of adequate security controls represent?
- A. Threat
- B. Vulnerability
- C. Impact
- D. Asset
Answer: B
NEW QUESTION 51
What is the worst possible action that an employee may receive for sharing his or her password or access with others?
- A. The lowest rating on his or her performance assessment
- B. Termination
- C. Three days suspension from work
- D. Forced roll off from the project
Answer: B
NEW QUESTION 52
Which is the glue that ties the triad together
- A. Process
- B. Collaboration
- C. Technology
- D. People
Answer: A
NEW QUESTION 53
Access Control System, CCTV and security guards are form of:
- A. Compliance
- B. Environment Security
- C. Access Control
- D. Physical Security
Answer: D
NEW QUESTION 54
......
Free Sales Ending Soon - 100% Valid ISO-ISMS-LA Exam: https://www.practicematerial.com/ISO-ISMS-LA-exam-materials.html

