100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

ISO27001 and ISO27002, standards and risk management UPDATED ACTUAL Exam Questions and CORRECT Answers

Rating
-
Sold
-
Pages
8
Grade
A+
Uploaded on
24-03-2025
Written in
2024/2025

ISO27001 and ISO27002, standards and risk management UPDATED ACTUAL Exam Questions and CORRECT Answers Before we are able to start defining a security strategy, we must first know what we are protecting and what we are protecting it from. - CORRECT ANSWER - Risk Analysis Risk Assessment To achieve information security, a suitable set of controls needs to be implemented, what are they? - CORRECT ANSWER - Policies, procedures, organizational structures and software and hardware functions.

Show more Read less
Institution
ISO
Module
ISO









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
ISO
Module
ISO

Document information

Uploaded on
March 24, 2025
Number of pages
8
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

ISO27001 and ISO27002, standards and risk
management UPDATED ACTUAL Exam
Questions and CORRECT Answers
Before we are able to start defining a security strategy, we must first know what we are
protecting and what we are protecting it from. - CORRECT ANSWER - Risk Analysis
Risk Assessment


To achieve information security, a suitable set of controls needs to be implemented, what are
they? - CORRECT ANSWER - Policies, procedures, organizational structures and
software and hardware functions.


All security controls and mechanisms are implemented to protect one or more of these security
principles? - CORRECT ANSWER - Confidentiality (exclusivity), Integrity and
Availability


What security principle ensures that a necessary level of secrecy is enforced at each element of
data processing and prevents unauthorized disclosure? - CORRECT ANSWER -
Confidentiality


Confidentiality can be achieved by? - CORRECT ANSWER - Encrypting data while at
rest and during transit
Using network traffic padding
Implementing strict access controls and data classifications
Training and awareness of proper procedures


Some examples of Confidentiality measures are? - CORRECT ANSWER - Clear desk
policy
Need to know basis
Strict access controls (physical and logical)

, Separation of duties
Strict separations between environments
Logical access management
Encryption for data at rest (whole disk, database encryption)
Encryption for data in transit (IPsec, SSL, PPTP, SSH)


What is traffic padding? - CORRECT ANSWER - Produces a continuous random data
stream of cipher text making it harder for an attacker to distinguish between true data flow and
padding.


What security principle refers to being correct or consistent with the intended state of
information? - CORRECT ANSWER - Integrity



Some examples of Integrity measures are? - CORRECT ANSWER - Changes in data and
systems are authorized
Auditing
Segregation of Duties
Hashing (data integrity)
Configuration management (system integrity)
Change control (process integrity)
Access control (physical and logical)
Transmission CRC functions


What security principle refers to the reliable and timeless access to data and resources to
authorized individuals? - CORRECT ANSWER - Availability



Some examples of Availability measures are? - CORRECT ANSWER - RAID
Clustering
Load Balancing

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
MGRADES Stanford University
View profile
Follow You need to be logged in order to follow users or courses
Sold
1078
Member since
1 year
Number of followers
102
Documents
68972
Last sold
1 day ago
MGRADES (Stanford Top Brains)

Welcome to MGRADES Exams, practices and Study materials Just think of me as the plug you will refer to your friends Me and my team will always make sure you get the best value from the exams markets. I offer the best study and exam materials for a wide range of courses and units. Make your study sessions more efficient and effective. Dive in and discover all you need to excel in your academic journey!

3.8

171 reviews

5
73
4
30
3
46
2
8
1
14

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these revision notes.

Didn't get what you expected? Choose another document

No problem! You can straightaway pick a different document that better suits what you're after.

Pay as you like, start learning straight away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and smashed it. It really can be that simple.”

Alisha Student

Frequently asked questions