EMT Practice Test

1. Question Content...


Question List

Question1: You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventoryof threats and risks.
What is the relation between a threat, risk and risk analysis?

Question2: What is the most important reason for applying the segregation of duties?

Question3: Select risk control activities for domain "10. Encryption" of ISO / 27002: 2013 (Choose two)

Question4: You are the owner of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks. What is this risk strategy called?

Question5: Responsibilities for information security in projects should be defined and allocated to:

Question6: What is an example of a security incident?

Question7: A company moves into a new building. A few weeks after the move, a visitor appears unannounced in the office of the director. An investigation shows that visitors passes grant the same access as the passes of the company's staff. Which kind of security measure could have prevented this?

Question8: What is an example of a non-human threat to the physical environment?

Question9: You have juststarted working at a large organization. You have been asked to sign a code of conduct as well as a contract. What does the organization wish to achieve with this?

Question10: What sort of security does a Public Key Infrastructure (PKI) offer?

Question11: What is the ISO / IEC 27002 standard?

Question12: One of the ways Internet of Things (IoT) devices can communicate with each other (or 'the outside world') is using a so-called short-range radio protocol. Which kind of short-range radio protocol makes it possible to use your phone as a credit card?

Question13: What is the objective of classifying information?

Question14: Physical labels and ________ are two common forms of labeling which are mentioned in ISO 27002.

Question15: What is the best description of a risk analysis?

Question16: We can acquire and supply information in various ways. The value of the information depends on whether it is reliable. What are the reliability aspects of information?

Question17: Why is compliance important forthe reliability of the information?