
100% Free ISFS Exam Dumps to Pass Exam Easily from BraindumpsVCE
Free ISFS Exam Questions ISFS Actual Free Exam Questions
For more info visit:
NEW QUESTION 23
There is a network printer in the hallway of the company where you work. Many employees dont pick up their printouts immediately and leave them in the printer. What are the consequences of this to the reliability of the information?
- A. The availability of the information is no longer guaranteed.
- B. The integrity of the information is no longer guaranteed.
- C. The confidentiality of the information is no longer guaranteed.
Answer: C
NEW QUESTION 24
You are the owner of SpeeDelivery courier service. Because of your companys growth you have to think about information security. You know that you have to start creating a policy. Why is it so important to have an information security policy as a starting point?
- A. The information security policy supplies instructions for the daily practice of information security.
- B. The information security policy gives direction to the information security efforts.
- C. The information security policy establishes who is responsible for which area of information security.
- D. The information security policy establishes which devices will be protected.
Answer: B
NEW QUESTION 25
Which one of the threats listed below can occur as a result of the absence of a physical measure?
- A. A user can view the files belonging to another user.
- B. A server shuts off because of overheating.
- C. A confidential document is left in the printer.
- D. Hackers can freely enter the computer network.
Answer: B
NEW QUESTION 26
Why do organizations have an information security policy?
- A. In order to give direction to how information security is set up within an organization.
- B. In order to ensure that staff do not break any laws.
- C. In order to ensure that everyone knows who is responsible for carrying out the backup procedures.
- D. In order to demonstrate the operation of the Plan-Do-Check-Act cycle within an organization.
Answer: A
NEW QUESTION 27
There is a network printer in the hallway of the company where you work. Many employees dont pick up their printouts immediately and leave them in the printer. What are the consequences of this to the reliability of the information?
- A. The availability of the information is no longer guaranteed.
- B. The integrity of the information is no longer guaranteed.
- C. The confidentiality of the information is no longer guaranteed.
Answer: C
Explanation:
Explanation
NEW QUESTION 28
You work in the IT department of a medium-sized company. Confidential information has got into the wrong hands several times. This has hurt the image of the company. You have been asked to propose organizational security measures for laptops at your company. What is the first step that you should take?
- A. Formulate a policy regarding mobile media (PDAs, laptops, smartphones, USB sticks)
- B. Appoint security personnel
- C. Set up an access control policy
- D. Encrypt the hard drives of laptops and USB sticks
Answer: A
NEW QUESTION 29
A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the companys staff. Which kind of security measure could have prevented this?
- A. A technical security measure
- B. A physical security measure
- C. An organizational security measure
Answer: B
NEW QUESTION 30
What is the most important reason for applying segregation of duties?
- A. Segregation of duties makes it easier for a person who is ready with his or her part of the work to take time off or to take over the work of another person.
- B. Segregation of duties makes it clear who is responsible for what.
- C. Segregation of duties ensures that, when a person is absent, it can be investigated whether he or she has been committing fraud.
- D. Tasks and responsibilities must be separated in order to minimize the opportunities for business assets to be misused or changed, whether the change be unauthorized or unintentional.
Answer: D
NEW QUESTION 31
When we are at our desk, we want the information system and the necessary information to be available. We want to be able to work with the computer and access the network and our files. What is the correct definition of availability?
- A. The degree to which the system capacity is enough to allow all users to work with it
- B. The degree to which the continuity of an organization is guaranteed
- C. The total amount of time that an information system is accessible to the users
- D. The degree to which an information system is available for the users
Answer: D
NEW QUESTION 32
A well executed risk analysis provides a great deal of useful information. A risk analysis has four main objectives. What is not one of the four main objectives of a risk analysis?
- A. Determining the costs of threats
- B. Identifying assets and their value
- C. Determining relevant vulnerabilities and threats
- D. Establishing a balance between the costs of an incident and the costs of a security measure
Answer: A
NEW QUESTION 33
Logging in to a computer system is an access-granting process consisting of three steps: identification, authentication and authorization.
What occurs during the first step of this process: identification?
- A. The first step consists of comparing the password with the registered password.
- B. The first step consists of granting access to the information to which the user is authorized.
- C. The first step consists of checking if the user is using the correct certificate.
- D. The first step consists of checking if the user appears on the list of authorized users.
Answer: D
NEW QUESTION 34
Your company has to ensure that it meets the requirements set down in personal data protection legislation.
What is the first thing you should do?
- A. Make the employees responsible for submitting their personal data.
- B. Issue a ban on the provision of personal information.
- C. Translate the personal data protection legislation into a privacy policy that is geared to the company and the contracts with the customers.
- D. Appoint a person responsible for supporting managers in adhering to the policy.
Answer: C
NEW QUESTION 35
What is an example of a non-human threat to the physical environment?
- A. Virus
- B. Storm
- C. Corrupted file
- D. Fraudulent transaction
Answer: B
NEW QUESTION 36
Some security measures are optional. Other security measures must always be implemented. Which measure(s) must always be implemented?
- A. Physical security measures
- B. Logical access security measures
- C. Measures required by laws and regulations
- D. Clear Desk Policy
Answer: C
NEW QUESTION 37
Which type of malware builds a network of contaminated computers?
- A. Storm Worm or Botnet
- B. Virus
- C. Trojan
- D. Logic Bomb
Answer: A
NEW QUESTION 38
An employee in the administrative department of Smiths Consultants Inc. finds out that the expiry date of a contract with one of the clients is earlier than the start date. What type of measure could prevent this error?
- A. Organizational measure
- B. Availability measure
- C. Integrity measure
- D. Technical measure
Answer: D
NEW QUESTION 39
A couple of years ago you started your company which has now grown from 1 to 20 employees. Your companys information is worth more and more and gone are the days when you could keep it all in hand yourself. You are aware that you have to take measures, but what should they be? You hire a consultant who advises you to start with a qualitative risk analysis. What is a qualitative risk analysis?
- A. This analysis is based on scenarios and situations and produces a subjective view of the possible threats.
- B. This analysis follows a precise statistical probability calculation in order to calculate exact loss caused by damage.
Answer: A
NEW QUESTION 40
What is a human threat to the reliability of the information on your company website?
- A. Because of a lack of maintenance, a fire hydrant springs a leak and floods the premises. Your employees cannot come into the office and therefore can not keep the information on the website up to date.
- B. The computer hosting your website is overloaded and crashes. Your website is offline.
- C. One of your employees commits an error in the price of a product on your website.
Answer: C
NEW QUESTION 41
......
Exin Information Security Foundation (based on ISO/IEC 27002) (EX0-105) ISFS Exam
Exin Information Security Foundation (based on ISO/IEC 27002) (EX0-105) ISFS Exam which is related to Exin Information Security Foundation based on ISO/IEC 27002 and credits toward Exin Information Security Management Certification. This exam validates the Candidate knowledge and skills of the concept of Information, relationships between threats, risks and the reliability of the information, importance of measures, physical security, technical measures, measures security policy and security organization.
The benefit in Obtaining the ISFS Exam Certification
- After completion of Exin Information Security Management Candidates receive official confirmation from Exin that you are now fully certified in their chosen field. This can be now added to their CV, cover letters and job applications.
- Candidates will get in-depth knowledge by completing the courses along with the access to revision materials for 6 months upon completion means they will have a wider skill set when it comes to the various technologies and systems than an uncertified professional. Certified Professional in this particular skill set is 74% more efficient when it comes to completing their tasks in a timely well-executed manner.
- When Candidates applying for a job or looking to promotion in their current position, an Exin Information Security Management Certification in the field in which Candidates are applying will put you at the top of the list and make them a desirable candidate for employers.
- Becoming Exin Information Security Management means one thing you are worth more to the company and therefore more to yourself in the form of an upgraded pay package. On average, an Exin Information Security Management member of staff is estimated to be worth 30% more to a company than their uncertified professionals.
- Organization owners invest a lot in their employees when it comes to their training with the goal of making them quicker, more efficient, and more knowledgeable about their role. Certified Professional will reduce the time he spends on tasks, meaning he can get more done this could help reduce company downtime when repairing faults on a system or fixing hardware problems.
Latest 100% Passing Guarantee - Brilliant ISFS Exam Questions PDF: https://www.braindumpsvce.com/ISFS_exam-dumps-torrent.html
Verified ISFS dumps and 80 unique questions: https://drive.google.com/open?id=1DB42d2B7h86XCaVn4jxCsEMVYVMPd23d