Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free PECB ISO-IEC-27035-Lead-Incident-Manager Practice Exam with Questions & Answers | Set: 3

Questions 21

Which of the following is NOT an example of technical control?

Options:
A.

Implementing a policy for regular password changes

B.

Implementing surveillance cameras

C.

Installing a firewall to protect the network

PECB ISO-IEC-27035-Lead-Incident-Manager Premium Access
Questions 22

Scenario 8: Moneda Vivo, headquartered in Kuala Lumpur. Malaysia, is a distinguished name in the banking sector. It is renowned for its innovative approach to digital banking and unwavering commitment to information security. Moneda Vivo stands out by offering various banking services designed to meet the needs of its clients. Central to its operations is an information security incident management process that adheres to the recommendations of ISO/IEC 27035-1 and 27035-2.

Recently. Moneda Vivo experienced a phishing attack aimed at its employees Despite the bank's swift identification and containment of the attack, the incident led to temporary service outages and data access issues, underscoring the need for improved resilience The response team compiled a detailed review of the attack, offering valuable insights into the techniques and entry points used and identifying areas for enhancing their preparedness.

Shortly after the attack, the bank strengthened its defense by implementing a continuous review process to ensure its incident management procedures and systems remain effective and appropriate While monitoring the incident management process, a trend became apparent. The mean time between similar incidents decreased after a few occurrences; however, Moneda Vivo strategically ignored the trend and continued with regular operations This decision was rooted in a deep confidence in its existing security measures and incident management protocols, which had proven effective in quick detection and resolution of issues

Moneda Vivo’s commitment to transparency and continual improvement is exemplified by its utilization of a comprehensive dashboard. This tool provides real time insights into the progress of its information security incident management, helping control operational activities and ensure that processes stay within the targets of productivity, quality, and efficiency. However, securing its digital banking platform proved challenging. Following a recent upgrade, which included a user interface change to its digital banking platform and a software update, Moneda Vivo recognized the need to immediately review its incident management process for accuracy and completeness. The top management postponed the review due to financial and time constraints.

Based on scenario 8, Moneda Vivo conducts continuous review of the incident management process to ensure the effectiveness of processes and procedures in place. Is this a good practice to follow?

Options:
A.

No, organizations should regularly assess the physical security measures to ensure they align with incident management protocols

B.

Yes, organizations should conduct continuous review of the incident management process to ensure the effectiveness of the processes and procedures in place

C.

No, organizations should conduct quarterly performance reviews of individual employees to ensure they follow incident management protocols

Questions 23

Which element should an organization consider when identifying the scope of their information security incident management?

Options:
A.

Hardcopy information

B.

Electronic information

C.

Both A and B

Questions 24

What is one of the requirements for an organization's technical means in supporting information security?

Options:
A.

Public disclosure of contact register details for transparency

B.

Immediate deletion of all incident reports for security purposes

C.

Quick acquisition of information security event/incident/vulnerability reports

Certification Provider: PECB
Exam Name: PECB Certified ISO/IEC 27035 Lead Incident Manager
Last Update: Sep 12, 2025
Questions: 80