Free ISO / IEC 27002 - Lead Implementer Exam Braindumps (page: 3)

Page 2 of 13

ISO 27002 provides guidance in the following area

  1. PCI environment scoping
  2. Information handling recommendations
  3. Framework for an overall security andcompliance program
  4. Detailed lists of required policies and procedures

Answer(s): C



What do employees need to know to report a security incident?

  1. How to report an incident and to whom.
  2. Whether the incident has occurred before and what was the resulting damage.
  3. The measures that should have been taken to prevent the incident in the first place.
  4. Who is responsible for the incident and whether it was intentional.

Answer(s): A



What is an example of a good physical security measure?

  1. All employees and visitors carry an access pass.
  2. Printers that are defective or have been replacedare immediately removed and given away as garbage for recycling.
  3. Maintenance staff can be given quick and unimpeded access to the server area in the event of disaster.

Answer(s): A



What is the greatest risk for an organization ifno information security policy has been defined?

  1. If everyone works with the same account, it is impossible to find out who worked on what.
  2. Information security activities are carried out by only a few people.
  3. Too many measures areimplemented.
  4. It is not possible for an organization to implement information security in a consistent manner.

Answer(s): D






Post your Comments and Discuss GAQM ISO / IEC 27002 - Lead Implementer exam with other Community members:

ISO / IEC 27002 - Lead Implementer Discussions & Posts