ISO/IEC 17799

Choose a study mode

Play Quiz
Study Flashcards
Spaced Repetition
Chat to Lesson

Podcast

Play an AI-generated podcast conversation about this lesson

Questions and Answers

Which of the following is true about ISO/IEC 17799:2005?

  • It provides guidelines on implementation in PDCA format.
  • It includes four categories of information. (correct)
  • It has 133 possible controls that must all be used.
  • It was renamed as ISO 27002 in 2007.

What does ISO 27001 provide guidelines on?

  • Implementation in PDCA format. (correct)
  • Identification of relevant controls.
  • Achievement of objectives.
  • Identification of relevant objectives.

How many categories of information are included in each section?

  • Three
  • Four (correct)
  • Two
  • One

Which approach to cyber security management is driven by standards?

<p>ISO/IEC 27001 for information security (B)</p> Signup and view all the answers

Which framework is specified by ISACA and provides control objectives for information-related technology?

<p>COBIT (C)</p> Signup and view all the answers

Which approach to cyber security management considers it as an internal control mechanism?

<p>Governance-Risk-Compliance (GRC) approach (D)</p> Signup and view all the answers

Which approach to cyber security management includes contingency planning as a constituent?

<p>Organizational planning approach (C)</p> Signup and view all the answers

Which organization developed the Committee of Sponsoring Organizations (COSO) framework for IT control?

<p>ISACA (C)</p> Signup and view all the answers

Flashcards are hidden until you start studying

Use Quizgecko on...
Browser
Browser