12312312

12312312

Assessment

Quiz

World Languages

Vocational training

Easy

Created by

Ari Ari

Used 3+ times

FREE Resource

Student preview

quiz-placeholder

5 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the point of "information classification"?

To ensure that all risks receive an appropriate level of treatment

To ensure that all security controls are implemented

It has the same meaning as risk assessment

To ensure that information receives an appropriate level of protection

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

"Control type: #Preventive" is in ISO/IEC 27002 (2022) an example of what?

A technical specification for the control

A non-functional requirement on the control

An attribute given to that control

The theme relating to that control

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

"Segregation of duties" is a method for reducing the risk of accidental or deliberate misuse of an organization's assets. What does it mean?

Segregated responsibilities to reduce opportunities to breach security

That two persons should not perform the same duties

That each person's duties should be separable from the person

To pay duty in two separate installments

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which are the themes used to organize the controls in ISO/IEC 27002 (2022) in chapters?

Technical and organizational

Administrative, logical, physical

Human, physical, technical, and managerial

People, physical, technological, and organizational

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is this standard (ISO/IEC 27002) concerned with?

None of the above

Both "a" and "b"

It contains a list of information security risks

It contains security controls (security measures)