EXIN Information Security Management Professional based on ISO/IEC 27001 - ISMP무료 덤프문제 풀어보기
Who should be asked to check compliance with the information security policy throughout the company?
정답: A
An information security officer is asked to write a retention policy for a financial system. She is aware of the fact that some data must be kept for a long time and other data must be deleted.
Where should she look for guidelines first?
Where should she look for guidelines first?
정답: B
A security architect argues with the internal fire prevention team about the statement in the information security policy, that doors to confidential areas should be locked at all times. The emergency response team wants to access to those areas in case of fire.
What is the best solution to this dilemma?
What is the best solution to this dilemma?
정답: B
The Board of Directors of an organization is accountable for obtaining adequate assurance.
Who should be responsible for coordinating the information security awareness campaigns?
Who should be responsible for coordinating the information security awareness campaigns?
정답: D