Podcast
Questions and Answers
Which of the following is true about ISO/IEC 17799:2005?
Which of the following is true about ISO/IEC 17799:2005?
- It provides guidelines on implementation in PDCA format.
- It includes four categories of information. (correct)
- It has 133 possible controls that must all be used.
- It was renamed as ISO 27002 in 2007.
What does ISO 27001 provide guidelines on?
What does ISO 27001 provide guidelines on?
- Implementation in PDCA format. (correct)
- Identification of relevant controls.
- Achievement of objectives.
- Identification of relevant objectives.
How many categories of information are included in each section?
How many categories of information are included in each section?
- Three
- Four (correct)
- Two
- One
Which approach to cyber security management is driven by standards?
Which approach to cyber security management is driven by standards?
Which framework is specified by ISACA and provides control objectives for information-related technology?
Which framework is specified by ISACA and provides control objectives for information-related technology?
Which approach to cyber security management considers it as an internal control mechanism?
Which approach to cyber security management considers it as an internal control mechanism?
Which approach to cyber security management includes contingency planning as a constituent?
Which approach to cyber security management includes contingency planning as a constituent?
Which organization developed the Committee of Sponsoring Organizations (COSO) framework for IT control?
Which organization developed the Committee of Sponsoring Organizations (COSO) framework for IT control?
Flashcards are hidden until you start studying