Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free GAQM ISO27-13-001 Practice Exam with Questions & Answers | Set: 3

Questions 21

What is the purpose of an Information Security policy?

Options:
A.

An information security policy makes the security plan concrete by providing the necessary details

B.

An information security policy provides insight into threats and the possible consequences

C.

An information security policy provides direction and support to the management regarding information security

D.

An information security policy documents the analysis of risks and the search for countermeasures

GAQM ISO27-13-001 Premium Access
Questions 22

Which of the following is not a type of Information Security attack?

Options:
A.

Legal Incidents

B.

Vehicular Incidents

C.

Technical Vulnerabilities

D.

Privacy Incidents

Questions 23

How are data and information related?

Options:
A.

Data is a collection of structured and unstructured information

B.

Information consists of facts and statistics collected together for reference or analysis

C.

When meaning and value are assigned to data, it becomes information

Questions 24

Who is authorized to change the classification of a document?

Options:
A.

The author of the document

B.

The administrator of the document

C.

The owner of the document

D.

The manager of the owner of the document

Questions 25

Does the security have the right to ask you to display your ID badges and check your bags?

Options:
A.

True

B.

False

Questions 26

Someone from a large tech company calls you on behalf of your company to check the health of your PC, and therefore needs your user-id and password. What type of threat is this?

Options:
A.

Social engineering threat

B.

Organisational threat

C.

Technical threat

D.

Malware threat

Questions 27

What is the name of the system that guarantees the coherence of information security in the organization?

Options:
A.

Information Security Management System (ISMS)

B.

Rootkit

C.

Security regulations for special information for the government

D.

Information Technology Service Management (ITSM)

Questions 28

What type of compliancy standard, regulation or legislation provides a code of practice for information security?

Options:
A.

ISO/IEC 27002

B.

Personal data protection act

C.

Computer criminality act

D.

IT Service Management

Questions 29

What is the standard definition of ISMS?

Options:
A.

Is an information security systematic approach to achieve business objectives for implementation, establishing, reviewing,operating and maintaining organization's reputation.

B.

A company wide business objectives to achieve information security awareness for establishing, implementing, operating, monitoring, reviewing, maintaining and improving

C.

A project-based approach to achieve business objectives for establishing, implementing, operating, monitoring, reviewing, maintaining and improving an organization’s information security

D.

A systematic approach for establishing, implementing,operating,monitoring, reviewing, maintaining and improving an organization’s information security to achieve business objectives.

Questions 30

Which of the following does an Asset Register contain? (Choose two)

Options:
A.

Asset Type

B.

Asset Owner

C.

Asset Modifier

D.

Process ID

Exam Code: ISO27-13-001
Certification Provider: GAQM
Exam Name: ISO 27001 : 2013 - Certified Lead Auditor
Last Update: Jul 17, 2025
Questions: 100

GAQM Related Exams

How to pass GAQM ISO-BCMS-22301 - ISO 22301 BCMS - Certified Lead Auditor Exam
How to pass GAQM ISO-IEC-LI - ISO / IEC 27002 - Lead Implementer Exam
How to pass GAQM ISO-ISMS-LA - ISO 27001:2013 ISMS - Certified Lead Auditor Exam

GAQM Free Exams

GAQM Free Exams
Unlock free GAQM exam resources and practice tests at Examstrack. Boost your GAQM exam readiness with top-notch materials.