wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

BCS level 3 - Business processes

Total questions: 36

Worksheet time: 18mins

Name
Class
Date
1.

What are the five steps to follow when creating your own standard operating procedure?

a)

Develop a list of your business processes, plan the process, talk with employees, write and review the process, maintain the process

b)

Plan, design, Develop/build, test, maintain

c)

There are 2 steps, talk to the employees and plan plan process

d)

None of the answer are correct

2.

What is business process?

a)

Collection of structured activities or tasks by people which in a specific sequence produce a service for a particular customer

b)

Information or document that a business or individual wishes not to make public

c)

When the same task is completed in many different ways, it will always take longer to complete

d)

The process to do business

3.

Examples of business processes :

a)

Receiving orders

b)

Invoicing, setting a marketing budget

c)

Shipping products, updating employee information

d)

All the answer are correct

4.

which process management identify current processes and design of proposed changes?

a)

Design

b)

Optimization

c)

Monitoring

d)

Modeling

5.

Which process management develop the product?

a)

Modeling

b)

Monitoring

c)

Design

d)

Execution

6.

Which process management keep track of completion level of changes and effectiveness?

a)

Monitoring

b)

Design

c)

Execution

d)

Optimisation

7.

The freedom of information act was in...

a)

2000

b)

1987

c)

2010

d)

2001

8.

In which processes are, product design and product development?

a)

Innovation processes

b)

Operations processes

c)

Customer processes

d)

Product design and product development are not in any process

9.

ISO 27001 is...

a)

Framework of policies and procedures that includes all legal controls involved in a organisation’s information risk management processes

b)

Key piece of legislation that criminalises the act of accessing or modifying data stored on a computer system without appropriate consent or permission

c)

Documentation generated within business which under the GDPR should be securely destroyed

d)

Any information which is public before or is made public the present License term

10.

What is the current version of the ISO 27001?

a)

2013

b)

20013

c)

20012

d)

1997.2

11.

What ISMS stand for?

a)

Information secure monitoring system

b)

Information security management system

c)

Intelligent system monitoring secure

d)

Information system monitoring secure

12.

ISO 27001 was developed to provide a model for...

a)

...establishing, implementing, operating, monitoring, reviewing, maintain and improving an information security management system.

b)

... violating these laws can lead to severe fines and penalties.

c)

...unauthorised access to computer material, punishable by twelve months imprisonment.

d)

...be adequate and only for what is needed

13.

Which ISO defines a six-part planning process.

a)

27001

b)

27001-3

c)

22003

d)

26000

14.

Why is security compliance important?

a)

To helps you avoid fines and penalties

b)

Because it is necessary

c)

Because is a business strategy.

d)

Because need to considered on a case by case basis.

15.

Computer Misuse Act 1990 talks about...

a)

Act of accessing or modifying data stored on a computer system without appropriate consent or permission

b)

Act of Parliament which updates data protection laws in the UK.

c)

...establishing, implementing, operating, monitoring, reviewing, maintain and improving an information security management system.

d)

Documentation generated within business which under the GDPR should be securely destroyed

16.

A HR department would use which system to manage salaries and pensions?

a)

Email

b)

Database

c)

Payroll

d)

Spreadsheet

17.

Which of the following is COMMONLY found in a word processing application?

a)

Slide list

b)

Formula bar

c)

Address bar

d)

Paragraph settings

18.

Which of the following SHOULD NOT be included in a version control table within a document?

a)

Date

b)

Version number

c)

Author

d)

ISBN

19.

What does the ISO 27001 standard cover?

a)

Information service management

b)

Information security management

c)

Information service organisation

d)

Internet security management

20.

An IT strategy document is aligned to support which of the following?

a)

Business strategy

b)

Security strategy

c)

Network strategy

d)

Infrastructure strategy

21.

A secure print and mail fulfillment ability is likely to be required for which purpose?

a)

Marketing communications

b)

Payslips

c)

Job advertisements

d)

Workplace safety posters

22.

Which of the following statements is TRUE when transferring on-premise services to the Cloud?

a)

Organisations that have purchased EULA / Master Agreements have automatic entitlement to transfer software to a cloud service

b)

Software licencing responsibilities need to be considered on a case by case basis

c)

The obligations for software licence compliance transfer to the cloud service provider

d)

Vendor audits focus on identifying counterfeit or non-purchased software rather than licence entitlement

23.

Which of the following is NOT an offence under the Computer Misuse Act?

a)

Accessing someone else's files with intent to commit further criminal offences

b)

Copying software and trying to sell it to someone for a profit

c)

Unauthorized access to someone else's files

d)

Hacking into someone's device

24.

Under which piece of legislation do individuals have the right to see a copy of the information an organisation holds about them?

a)

GDPR

b)

Freedom of information action 2000

c)

Computer Misuse Act

d)

ISO 27001

25.

Fill in the blank. The role of service prioritisation in business continuity and disaster recovery prioritises the order in which _________________.

a)

Data items should be made secure

b)

Business data should be backed-up

c)

Business data should be recovered

d)

Testing should be carried out

26.

Which act will be apply to someone that is copying and distributing copyrighted software, music and film ?

a)

Computer Misuse act 1990

b)

Data protection act 2018

c)

Standard operating procedures act 1990

d)

Disaster recovery act 2012

27.

For unauthorised access to computer material, and not exceeding level 5 on the standard scale, will punishable in prison by...

a)

12 months

b)

6 months

c)

5 years

d)

2 years

28.

What is the data protection act?

a)

UK act that it was developed to control how customer information is used by organisations.It protects people and lays down rules about how data about people can be used

b)

Develop a list of your business processes, plan the process, talk with employees, write and review the process, maintain the process

c)

Collection of structured activities or tasks by people which in a specific sequence produce a service for a particular customer

d)

Key piece of legislation that criminalises the act of accessing or modifying data stored on a computer system without appropriate consent or permission

29.

What GDPR stands for?

a)

General data protection regulation

b)

General distribution and protection regulation

c)

Government data protection release

d)

General data permission rejected

30.

Which one IS NOT include in the 8 principles of data protection act ?

a)

Fair and lawful...

b)

Accurate and up to data...

c)

Not kept longer than needed...

d)

Keep safe and insecure...

31.

SO 27001 is designed to help...

a)

...organisations manage their information security processes in line with international best practice

b)

...control how your personal information is used by organisations, businesses or the government

c)

... to protect personal data held by organisations.

d)

... includes draft copies that contain sensitive or personnel information.

32.

What is a confidential material?

a)

Any documentation generated within a business which under the GDPR should be securely destroyed.

b)

Only those documents that is related to business

c)

Any documentation generated within a business.

d)

Any documentation that is not public

33.

What is the role of business strategy in an organisation?

a)

Drive decisions in business, by helping organisations identify their strengths and weakness to decide where your efforts and resources are best spent.

b)

Collection of structured activities or tasks by people which in a specific sequence produce a service for a particular customer

c)

Develop a list of your business processes, plan the process, talk with employees, write and review the process, maintain the process

d)

establishing, implementing, operating, monitoring, reviewing, maintain and improving an information security management system.

34.

What is Standard operating procedures?

a)

Set of step-by-step instructions compiled by an organisation to help workers carry out complex routine operations

b)

Accessing someone else's files with intent to commit further criminal offences

c)

The obligations for software licence compliance transfer to the cloud service provider

d)

Documentation generated within business which under the GDPR should be securely destroyed

35.

IT strategy is...

a)

Written document that details the multiple factors that affect the organisation's investment in and use of technology

b)

Establishing, implementing, operating, monitoring, reviewing, maintain and improving an information security management system

c)

Drive decisions in business, by helping organisations identify their strengths and weakness to decide where your efforts and resources are best spent

d)

Control how your personal information is used by organisations, businesses or the government

36.

Why alignment is important between IT strategy and business strategy?

a)

Help to improve your business's performance, leading to more efficient processes, faster response times and more efficient supply chains.

b)

Drive decisions in business, by helping organisations identify their strengths and weakness

c)

Develop a list of your business processes, plan the process, talk with employees

d)

Establishing, implementing, operating, monitoring, reviewing, maintain and improving an information security management system