PECB Certified ISO/IEC 27001 : 2022 Lead Implementer exam ISO-IEC-27001-Lead-Implementer Question # 10 Topic 2 Discussion

PECB Certified ISO/IEC 27001 : 2022 Lead Implementer exam ISO-IEC-27001-Lead-Implementer Question # 10 Topic 2 Discussion

ISO-IEC-27001-Lead-Implementer Exam Topic 2 Question 10 Discussion:
Question #: 10
Topic #: 2

Upon the risk assessment outcomes. Socket Inc. decided to:

• Require the use of passwords with at least 12 characters containing uppercase and lowercase letters, symbols, and numbers

• Require the change of passwords at least once every 60 days

• Keep backup copies of files on IT-provided network drives

• Assign users to a separate network when they have access to cloud storage files storing customers' personal data.

Based on scenario 5, what can be considered as a residual risk to Socket Inc.?


A.

Files arc decrypted once the user is authenticated


B.

Users with access to cloud storage files are segregated on a separate network


C.

The use of passwords with at least 12 characters containing a mixture of uppercase and lowercase letters, symbols, and numbers


Get Premium ISO-IEC-27001-Lead-Implementer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.