Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

ISO-IEC-27001-Foundation Exam Dumps - ISO/IEC 27001 (2022) Foundation Exam

Go to page:
Question # 4

Which action is a required response to an identified residual risk?

A.

By default, it shall be controlled by information security awareness and training

B.

Top management shall delegate its treatment to risk owners

C.

It shall be reviewed by the risk owner to consider acceptance

D.

The organization shall change practices to avoid the risk occurring

Full Access
Question # 5

Identify the missing word in the following sentence.

According to ISO/IEC 27000, the definition of risk [?] is a “process to comprehend the nature of risk and to determine the level of risk.”

A.

Evaluation

B.

Analysis

C.

Assessment

D.

Management

Full Access
Question # 6

What is the definition of a threat according to ISO/IEC 27000?

A.

A potential cause of an unwanted incident which can result in harm to a system or organization

B.

A single or a series of unwanted or unexpected information security events

C.

A weakness of an asset or a control that can be exploited

D.

The risk remaining after risk treatment

Full Access
Question # 7

Which information is required to be included in the Statement of Applicability?

A.

The scope and boundaries of the ISMS

B.

The risk assessment approach of the organization

C.

The criteria against which risk will be evaluated

D.

The justification for including each information security control

Full Access
Question # 8

Which International Standard can be used to implement an integrated management system with ISO/IEC 27001?

A.

ISO/IEC 27003

B.

ISO/IEC 27013

C.

ISO 9001

D.

None of the above

Full Access
Go to page: