NEW
Font size
WorksheetsCompliance at Pos Digicert
Total questions: 20
Worksheet time: 10mins
Which of the following best describes Information Security Management System (ISMS)?
A security process in a company which improves data analytics.
A set of policies and procedures for systematically managing an organization’s sensitive data
A set of policies and procedures to manage the reputation risk of company.
A quality management system is a collection of business processes focused on consistently meeting customer requirements and enhancing their satisfaction.
What are the benefits in implementing Information Security Management System?
i. Protects the confidentiality, integrity and availability
ii. To receive good praises from customer
iii. Improve company culture towards data protection
iv. To be number one in market research field
i and ii
ii and iii
ii, iii and iv
i and iii
Who is responsible for Quality Management System?
Quality Manager / Quality Management Representative
Division / Department
COO
All employees in the company
What are the licenses / recognition that Pos Digicert have acquired from MCMC in the cause of doing its business?
i. CA License
ii. Recognition of Repository
iii. Recognition of Date Time Stamping
iv. Local Council License (MP Sepang)
i and ii
i, ii and iii
ii, iii and iv
All of the above
What is validity period for ISO 9001:2015 and ISO 27001:2013?
1 year
2 years
3 years
5 years
Elements required for trust as per the public key infrastructure (PKI) are as follows, except:
Functionality
Confidentiality
Authentication
Non-repudiation
In the fundamental security concepts embodied by Public Key Infrastructure (PKI); Non-repudiation generally means:
Information is genuine
Information is available only to those authorised for it
Evidence that an activity or transaction cannot later be denied
You are who you say you are, and you have rights to entry or information
The following are the legal effects of DSA 1997, except:
S. 64. A digitally signed message is valid, enforceable, and effective as if it had been written on paper.
S.62 (2). A document signed with a digital signature is legally binding as a document signed with a handwritten signature, an affixed thumbprint, or any other mark.
S.64 A digitally signed message is verified by the signer himself or herself with the intention of sending the message.
S.65. A digitally signed message is valid, enforceable, and effective as the original message
Which of the following document can be permitted to use digital signature?
i. Agreements
ii. Wills and Codicils
iii. Trust documents
iv. Financial reports
i and ii
i, ii and iii
ii and iii
All of the above
What is the key benefit of a CA being enrolled under the AATL program?
Automatically trusts new digital signage that are chained to the Adobe Root certificate embedded in Adobe Acrobat or Reader software.
Allows for the creation of digital signatures that are trusted whenever the signed document is opened in Adobe Acrobat or Reader software
Allows users to create logos, graphics, cartoons and fonts for the photo-realistic layouts to be opened in Adobe Acrobat or Reader software.
Allows users to digitally sign their documents.
How many years retention period for CA related records that we are currently practice?
10 years
8 years
5 years
7 years
In Pos Digicert, we are practicing document classification system. What is our current practice for document classification?
Top Secret, Private & Confidential, Restricted
Top Secret, Secret, Public
Top Secret, Private & Confidential, Public
Top Secret, Confidential, Restricted
In QMS ISO 9001:2015 & ISMS ISO/IEC 27001:2013 Standards , which clause mentions about Documented Information?
Clause 7.5
Clause 6.5
Clause 5.2
Annex 8.1
What is the handling method for documents classified under Top Secret classification?
Documented information for this level can be shared with third party without approval.
Documented information shall be kept in a locked cabinet, controlled by process owner and labelled “TOP SECRET’.
Documented information to be controlled by process owner, labelled “TOP SECRET’ and can be shared with third party without approval.
Documented information labelled top secret and can be left at work station for reference.
What does a typical department manual in Pos Digicert contain?
i. Document creator’s photo
ii. Versioning
iii. Process Flow
iv. Process Description
v. Attendance Time Sheet
i and ii
i, ii and iii
ii, iii and iv
All of the above
What does SSL stands for?
Serial Session Layer
Secure Socket Layer
Session Secure Layer
Series Socket Layer
What type of SSL validation that Pos Digicert offers to its customers?
i. Domain Validated
ii. Organisation Validated
iii. Extended Validation
iv. Code Validated
i and iii
iii and iv
i, ii and iii
i and iv
What is our official SLA for SSL orders?
1-2 business days
3-5 business days
5-10 business days
7-10 business days
Which of the following brand of SSL certificate that we resell to our customers?
i. Symantec
ii. Entrust
iii. Go Daddy
iv. GlobalSign
i and ii
ii and iii
ii and iv
i, ii, iii and iv
What is the name of our internal SSL certificate?
Pos Digicert Server ID G3
Pos Digicert Class 2 Root CA G3
Pos Digicert SSL Root CA 2048
Pos Digicert AATL Root G3
