WorksheetsInformation Security and Governance Quiz
Total questions: 10
Worksheet time: 5mins
Which ISO standard primarily focuses on Information Security Management Systems (ISMS), often applied in government IT systems?
ISO 9001
ISO 27001
ISO 14001
ISO 20000
In the Philippine context, which law mandates data privacy and protection in both government and private institutions?
Cybercrime Prevention Act of 2012 (RA 10175)
E-Commerce Act of 2000 (RA 8792)
Data Privacy Act of 2012 (RA 10173)
Freedom of Information Order
Which of the following is NOT a principle of ISO 9001 Quality Management?
Customer focus
Leadership
Continual improvement
Maximizing profit
What does the “process approach” in quality management emphasize?
Focusing on individual tasks only
Managing activities as interconnected systems
Relying solely on employee initiative
Removing all documentation requirements
Which law institutionalized the Freedom of Information (FOI) in the Philippine Executive branch through an Executive Order?
RA 10173
RA 11032
EO No. 2, s. 2016
RA 8792
RA 11032 or the Ease of Doing Business Act requires government agencies to:
Eliminate all online services
Streamline frontline services and reduce red tape
Avoid publishing citizen charters
Limit ICT adoption
Which of the following best explains the importance of ISO certification for government digital services?
It ensures political compliance.
It guarantees zero errors in IT systems.
It builds trust by ensuring internationally recognized standards of quality and security.
It eliminates the need for audits.
Which is a common pitfall in implementing ISO in government IT projects?
Too much leadership support
Over-documentation without actual implementation
Strong employee engagement
Regular internal audits
In ISO 27001, which of the following is a critical control?
Hiring only IT graduates
Risk assessment and risk treatment plan
Posting passwords on bulletin boards for easy access
Ignoring third-party vendor risks
The Philippine e-Government Master Plan (EGMP) emphasizes:
Paper-based transactions only
Fragmented ICT solutions in every agency
Interoperability and citizen-centric digital government services
Avoiding private sector partnerships
