Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free GIAC G2700 Practice Exam with Questions & Answers | Set: 12

Questions 111

In which of the following mechanisms does an authority, within limitations, specify what objects can be accessed by a subject?

Options:
A.

Mandatory Access Control

B.

Task-based Access Control

C.

Discretionary Access Control

D.

Role-Based Access Control

GIAC G2700 Premium Access
Questions 112

You work as an Information Security Manager for uCertify Inc. You are working on the documentation of ISMS. Which of the following steps are concerned with the development of ISMS?

Each correct answer represents a complete solution. Choose all that apply.

Options:
A.

Risk management

B.

Selection of appropriate controls

C.

HR security planning

D.

Statement of Applicability

Questions 113

Which of the following policies defines the goals and elements of an organization's computer systems?

Options:
A.

Public

B.

Corporate

C.

Human resource

D.

Computer security

Questions 114

Which of the following surveys found that the smaller organizations had had a better understanding of their information assets?

Options:
A.

DTI Survey

B.

CBI Cyber Crime Survey

C.

Information Security Breaches Survey (ISBS) 2006

D.

KPMG's Information Security Survey 2000

Questions 115

Which of the following is not one of the objectives of risk analysis?

Options:
A.

Determining the risk that threats will become a reality

B.

Identifying assets and their value

C.

Removing the risks

D.

Determining vulnerabilities and threats

Questions 116

Which of the following defines the amount of data loss a business can endure?

Options:
A.

RTO

B.

RTA

C.

BCP

D.

RPO

Questions 117

Which of the following is NOT a type of FMEA?

Options:
A.

BFMEA

B.

CFMEA

C.

DFMEA

D.

PFMEA

Questions 118

Which of the following indicates that the project team has decided not to change the project management plan to deal with a risk?

Options:
A.

Risk transference

B.

Risk acceptance

C.

Risk avoidance

D.

Risk mitigation

Questions 119

You work as an Information Security Manager for uCertify Inc. You are working on an asset management plan. Which of the following controls of the ISO 27000 standard deals with asset management?

Options:
A.

Control A.1

B.

Control A.8

C.

Control A.2

D.

Control A.7

Questions 120

Which of the following are the valid reasons for the occurrence of Drive-by download?

Each correct answer represents a complete solution. Choose all that apply.

Options:
A.

Clicking on a deceptive pop-up window

B.

Updating windows files automatically

C.

Visiting a website

D.

Viewing an e-mail message

GIAC Free Exams

GIAC Free Exams
Prepare for GIAC certification with free access to reliable study resources and practice tests at Examstrack.