wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

ISO 27001:2013 Awareness

Total questions: 20

Worksheet time: 11mins

Name
Class
Date
1.

Which standard are we implementing now?

a)

ISO 9001:2015

b)

ISO 22301: 2013

c)

ISO/IEC 27001:2013

d)

ISO 31000

2.

Below are the benefits of implementing ISO/IEC 27001:2013 except...

a)

Identify and improve current security processes

b)

The exposure to risk is maximized

c)

Ensures compliance with client, regulatory, and legal requirements

d)

Reduce the costs and risks of security breaches

3.

Choose all which is related to cyber-security threats only.

(More than one answer)

a)

Ransomware

b)

Freeware

c)

Spyware

d)

Malware

e)

DDoS

4.

Based on the picture, which policy are we looking at?

a)

HR Policy

b)

Workspace Management Policy

c)

Clean Desk Policy

d)

Clean Table Policy

5.

Which is an example of a strong password?

a)

papayousini

b)

123456789

c)

Z%S5jh~D

d)

abc1234

6.

"Information Security is everyone's responsibility"

True or False?

a)

True

b)

False

7.

"Passwords should be saved in your device so it is easier for you to remember them"

True or False?

a)

True

b)

False

8.

What would you do if received a suspicious email or ads claiming you've won a prize?

a)

Click and claim the prize!

b)

I will ignore it. It highly contains malware

9.

What is the purpose of Integrity?

a)

The information is safe

from accidental or

intentional modification

or alteration

b)

The information is safe

from accidental or

intentional disclosure

c)

The information is

available to authorized

users when needed

10.

Who should practice the Clean Desk policy in the office?

a)

All the managers

b)

Everyone

c)

Finance Department

d)

ISMS Department

11.

ISO 27001 was developed to "provide a model for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an information security management system.

a)

True

b)

False

12.

Which of the below are current threats to many organizations?

a)

Fraud

b)

Loss of information

c)

Unauthorized access

d)

All of the above

13.

Information security objectives shall be;

a)

Consistent with the information security policy

b)

Measurable (if practicable)

c)

Communicated

d)

All of the above

14.

"ISO 27001:2013 is focused solely on the protection of personal information"

Is the above statement 'true' or 'false'?

a)

True

b)

False

15.

What does the C in the CIA of Information Security stand for?

a)

Confidentiality

b)

Context

c)

Conformity

16.

How is ‘Information Security’ defined in an ISMS (Information Security Management System)?

a)

Maintenance of security services

b)

Preservation of confidentiality, integrity, and availability of information

c)

Protection of data and information

17.

ISMS is an abbreviation for...

a)

Internet Security Management System

b)

Incident Security Management System

c)

Information Security Management System

d)

Information security policies

18.

What are the key principles of Information Security?

a)

Accessibility, Continuity & Informative

b)

Availability, Confidentiality & Integrity

c)

Answerable, Continuity & Integrity

d)

Achievable, Continuous & Informative

19.

What is Information Security Policy?

a)

A set of processes to ensure data assets are formally managed

b)

A formal business contingency & disaster recovery plan

c)

A guideline for Internet Security

d)

Provides a definitive statement of information security policy

20.

What is the best way to ensure the effectiveness of antivirus software?

a)

Run the antivirus software at least every hour

b)

Test the software by infecting your machine with a virus

c)

Install the latest version & update security patches

d)

Use the outdated antivirus software