Pass the GAQM GAQM: ISO ISO-IEC-LI Questions and answers with CertsForce

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

Which of the following measures is a preventive measure?

Options:

A.

Installing a logging system that enables changes in a system to be recognized


B.

Shutting down all internet traffic after a hacker has gained access to the company systems


C.

Putting sensitive information in a safe


D.

Classifying a risk as acceptable because the cost of addressing the threat is higher than the value of the information at risk


Expert Solution
Questions # 12:

You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventory of threats and risks. What is the relation between a threat, risk and risk analysis?

Options:

A.

A risk analysis identifies threats from the known risks.


B.

A risk analysis is used to clarify which threats are relevant and what risks they involve.


C.

A risk analysis is used to remove the risk of a threat.


D.

Risk analyses help to find a balance between threats and risks.


Expert Solution
Questions # 13:

What is the most important reason for applying the segregation of duties?

Options:

A.

Segregation of duties makes it clear who is responsible for what.


B.

Segregation of duties ensures that, when a person is absent, it can be investigated whether he or she has been committing fraud.


C.

Tasks and responsibilities must be separated in order to minimize the opportunities for business assets to be misused or changed, whether the change be unauthorized or unintentional.


D.

Segregation of duties makes it easier for a person who is ready with his or her part of the work to take time off or to take over the work of another person.


Expert Solution
Questions # 14:

Which of the following measures is a corrective measure?

Options:

A.

Incorporating an Intrusion Detection System (IDS) in the design of a computer center


B.

Installing a virus scanner in an information system


C.

Making a backup of the data that has been created or altered that day


D.

Restoring a backup of the correct database after a corrupt copy of the database was written over the original


Expert Solution
Questions # 15:

Peter works at the company Midwest Insurance. His manager, Linda, asks him to send the terms and conditions for a life insurance policy to Rachel, a client. Who determines the value of the information in the insurance terms and conditions document?

Options:

A.

The recipient, Rachel


B.

The person who drafted the insurance terms and conditions


C.

The manager, Linda


D.

The sender, Peter


Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions