
ISO 27001 Information Security Concepts
Authored by Ashin Shenir
Business
University

AI Actions
Add similar questions
Adjust reading levels
Convert to real-world scenario
Translate activity
More...
Content View
Student View
11 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is ISO 27001 primarily defined as?
A set of cybersecurity tools for businesses.
An international standard for an Information Security Management System (ISMS).
A regulation for data privacy in the European Union.
A framework for managing financial risks in organizations.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
An Information Security Management System (ISMS) is described as a systematic approach consisting of which three core elements?
Hardware, Software, and Networks
Policies, Procedures, and Guidelines
People, Processes, and Technology
Confidentiality, Integrity, and Availability
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
According to the video, which of the following is NOT one of the three key aspects of information that ISO 27001 focuses on protecting?
Confidentiality
Integrity
Accessibility
Availability
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is the primary distinction between ISO 27001 and ISO 27002 within the ISO 27000 series?
ISO 27001 specifies an effective ISMS, while ISO 27002 provides the code of conduct and best practices for implementation.
ISO 27001 is for large enterprises, while ISO 27002 is for small and medium-sized businesses.
ISO 27001 focuses on cloud security, while ISO 27002 covers physical security.
ISO 27001 is a legal requirement, while ISO 27002 is optional guidance.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following is a stated benefit of implementing ISO 27001?
It guarantees immunity from all cyber attacks.
It eliminates the need for any internal security staff.
It helps organizations respond to evolving security threats by constantly adapting to changes.
It automatically reduces all information security costs without prior assessment.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
How many best-practice controls are included in Annex A of ISO 27001, covering the breadth of information security management?
50
75
114
200
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is the main purpose of conducting a risk assessment as part of an ISMS under ISO 27001?
To identify and evaluate potential security risks to information assets.
To ensure compliance with all legal regulations.
To eliminate all security risks completely.
To develop a marketing strategy for information security services.
Access all questions and much more by creating a free account
Create resources
Host any resource
Get auto-graded reports

Continue with Google

Continue with Email

Continue with Classlink

Continue with Clever
or continue with

Microsoft
%20(1).png)
Apple
Others
Already have an account?