Free ISO / IEC 27002 - Lead Implementer Exam Braindumps (page: 5)

Page 4 of 13

What are the data protection principles set out in the GDPR?

  1. Purpose limitation, proportionality, availability, data minimisation
  2. Purpose limitation, proportionality, data minimisation, transparency
  3. Target group, proportionality, transparency, data minimisation
  4. Purpose limitation, pudicity, transparency, data minimisation

Answer(s): B



What should be used to protect data on removable media ifdata confidentiality or integrity are important considerations?

  1. backup on another removable medium
  2. cryptographic techniques
  3. a password
  4. logging

Answer(s): B



The company Midwest Insurance has taken many measures to protect its information. It uses an Information Security Management System, the input and output of data in applications is validated, confidential documents are sent in encrypted form and staff use tokens to access information systems. Which of these is not a technical measure?

  1. Information Security Management System
  2. The use of tokens to gain access to information systems
  3. Validation of input and output data in applications
  4. Encryption ofinformation

Answer(s): A



You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventoryof threats and risks. What is the relation between a threat, risk and risk analysis?

  1. A risk analysis identifies threats from the known risks.
  2. A risk analysis is used to clarify which threats are relevant and what risks they involve.
  3. A riskanalysis is used to remove the risk of a threat.
  4. Risk analyses help to find a balance between threats and risks.

Answer(s): B






Post your Comments and Discuss GAQM ISO / IEC 27002 - Lead Implementer exam with other Community members:

ISO / IEC 27002 - Lead Implementer Discussions & Posts