GAQM ISO / IEC 27002 - Lead Implementer Exam Practice Test

Page: 1 / 14
Total 50 questions
Question 1

You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventory of threats and risks. What is the relation between a threat, risk and risk analysis?



Answer : B


Question 2

The company Midwest Insurance has taken many measures to protect its information. It uses an Information Security Management System, the input and output of data in applications is validated, confidential documents are sent in encrypted form and staff use tokens to access information systems. Which of these is not a technical measure?



Answer : A


Question 3

Which is a legislative or regulatory act related to information security that can be imposed upon all organizations?



Answer : D


Question 4

Midwest Insurance grades the monthly report of all claimed losses per insured as confidential. What is accomplished if all other reports from this insurance office are also assigned the appropriate grading?



Answer : C


Question 5

What sort of security does a Public Key Infrastructure (PKI) offer?



Answer : D


Question 6

Select the controls that correspond to the domain "9. ACCESS CONTROL" of ISO / 27002 (Choose three)



Answer : A, B, D


Question 7

What is the ISO / IEC 27002 standard?



Answer : A


Page:    1 / 14   
Total 50 questions