EX0-105 Exam
Information Security Foundation based on ISO/IEC 27002
- Exam Number/Code : EX0-105
- Exam Name : Information Security Foundation based on ISO/IEC 27002
- Questions and Answers : 79 Q&As
- Update Time: 2011-09-21
- Price:
$ 119.00$ 69.00
Free EX0-105 Demo Download
Test4pass offers free demo for EXIN Inc Certification EX0-105 exam (Information Security Foundation based on ISO/IEC 27002). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. We are the only one site can offer demo for almost all products.
Exam Description
It is well known that EX0-105 exam test is the hot exam of EXIN,Inc certification. Test4pass offer you all the Q&A of the EX0-105 real test . It is the examination of the perfect combination and it will help you pass EX0-105 exam at the first time!
Why choose Test4pass EX0-105 braindumps
Quality and Value for the EX0-105 Exam
100% Guarantee to Pass Your EX0-105 Exam
Downloadable, Interactive EX0-105 Testing engines
Verified Answers Researched by Industry Experts
Drag and Drop questions as experienced in the Actual Exams
Practice Test Questions accompanied by exhibits
Our Practice Test Questions are backed by our 100% MONEY BACK GUARANTEE.
EXIN,Inc EXIN Inc Certification EX0-105 exam braindumps questions and answers
¡¡
Exam : EXIN EX0-105
Title : Information Security Foundation based on ISO/IEC 27002
1. What is the definition of the Annual Loss Expectancy?
A. The Annual Loss Expectancy is the amount of damage that can occur as a result of an incident during the year.
B. The Annual Loss Expectancy is the size of the damage claims resulting from not having carried out risk analyses effectively.
C. The Annual Loss Expectancy is the average damage calculated by insurance companies for businesses in a country.
D. The Annual Loss Expectancy is the minimum amount for which an organization must insure itself.
Answer: A
2. Some threats are caused directly by people, others have a natural cause.
What is an example of an intentional human threat?
A. Lightning strike
B. Arson
C. Flood
D. Loss of a USB stick
Answer: B
3. Peter works at the company Midwest Insurance. His manager, Linda, asks him to send the terms and conditions for a life insurance policy to Rachel, a client.
Who determines the value of the information in the insurance terms and conditions document?
A. The recipient, Rachel
B. The person who drafted the insurance terms and conditions
C. The manager, Linda
D. The sender, Peter
Answer: A
4. What is a risk analysis used for?
A. A risk analysis is used to express the value of information for an organization in monetary terms.
B. A risk analysis is used to clarify to management their responsibilities.
C. A risk analysis is used in conjunction with security measures to reduce risks to an acceptable level.
D. A risk analysis is used to ensure that security measures are deployed in a cost-effective and timely fashion.
Answer: D
5. Why do organizations have an information security policy?
A. In order to demonstrate the operation of the Plan-Do-Check-Act cycle within an organization.
B. In order to ensure that staff do not break any laws.
C. In order to give direction to how information security is set up within an organization.
D. In order to ensure that everyone knows who is responsible for carrying out the backup procedures.
Answer: C
6. What is the greatest risk for an organization if no information security policy has been defined?
A. If everyone works with the same account, it is impossible to find out who worked on what.
B. Information security activities are carried out by only a few people.
C. Too many measures are implemented.
D. It is not possible for an organization to implement information security in a consistent manner.
Answer: D
7. You are the owner of a growing company, SpeeDelivery, which provides courier services. You decide that it is time to draw up a risk analysis for your information system. This includes an inventory of the threats and risks.
What is the relation between a threat, risk and risk analysis?
A. A risk analysis identifies threats from the known risks.
B. A risk analysis is used to clarify which threats are relevant and what risks they involve.
C. A risk analysis is used to remove the risk of a threat.
D. Risk analyses help to find a balance between threats and risks.
Answer: B
8. When we are at our desk, we want the information system and the necessary information to be available. We want to be able to work with the computer and access the network and our files.
What is the correct definition of availability?
A. The degree to which the system capacity is enough to allow all users to work with it
B. The degree to which the continuity of an organization is guaranteed
C. The degree to which an information system is available for the users
D. The total amount of time that an information system is accessible to the users
Answer: C
9. A well executed risk analysis provides a great deal of useful information. A risk analysis has four main objectives.
What is not one of the four main objectives of a risk analysis?
A. Identifying assets and their value
B. Determining the costs of threats
C. Establishing a balance between the costs of an incident and the costs of a security measure
D. Determining relevant vulnerabilities and threats
Answer: B
10. What is an example of a non-human threat to the physical environment?
A. Fraudulent transaction
B. Corrupted file
C. Storm
D. Virus
Answer: C
11. We can acquire and supply information in various ways. The value of the information depends on whether it is reliable.
What are the reliability aspects of information?
A. Availability, Information Value and Confidentiality
B. Availability, Integrity and Confidentiality
C. Availability, Integrity and Completeness
D. Timeliness, Accuracy and Completeness
Answer: B
12. You are the owner of the courier company SpeeDelivery. You have carried out a risk analysis and now want to determine your risk strategy. You decide to take measures for the large risks but not for the small risks.
What is this risk strategy called?
A. Risk bearing
B. Risk avoiding
C. Risk neutral
Answer: C
13. You work in the office of a large company. You receive a call from a person claiming to be from the Helpdesk. He asks you for your password.
What kind of threat is this?
A. Natural threat
B. Organizational threat
C. Social Engineering
Answer: C
14. You are a consultant and are regularly hired by the Ministry of Defense to perform analyses. Since the assignments are irregular, you outsource the administration of your business to temporary workers. You don't want the temporary workers to have access to your reports.
Which reliability aspect of the information in your reports must you protect?
A. Availability
B. Integrity
C. Confidentiality
Answer: C
Click Online chat to talk with us , get more informations about EXIN,Inc EXIN Inc Certification EX0-105 practice exam study guides questions and answers
Test4pass EX0-105 Exam Features
Quality and Value for the EX0-105 Exam
Test4pass Practice Exams for EXIN,Inc EX0-105 are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development.
100% Guarantee to Pass Your EX0-105 Exam
If you prepare for the exam using our Test4pass testing engine, we guarantee your success in the first attempt. If you do not pass the EXIN Inc Certification EX0-105 exam (ProCurve Secure WAN) on your first attempt we will give you a FULL REFUND of your purchasing fee AND send you another same value product for free.
EXIN,Inc EX0-105 Downloadable, Printable Exams (in PDF format)
Our Exam EX0-105 Preparation Material provides you everything you will need to take your EX0-105 Exam. The EX0-105 Exam details are researched and produced by Professional Certification Experts who are constantly using industry experience to produce precise, and logical. You may get questions from different web sites or books, but logic is the key. Our Product will help you not only pass in the first try, but also save your valuable time.
EX0-105 Downloadable, Interactive Testing engines
We are all well aware that a major problem in the IT industry is that there is a lack of quality study materials. Our Exam Preparation Material provides you everything you will need to take a certification examination. Like actual certification exams, our Practice Tests are in multiple-choice (MCQs) Our EXIN,Inc EX0-105 Exam will provide you with free EX0-105 dumps questions with verified answers that reflect the actual exam. These questions and answers provide you with the experience of taking the actual test. High quality and Value for the EX0-105 Exam:100% Guarantee to Pass Your EXIN Inc Certification exam and get your EXIN Inc Certification Certification.
Test4pass EX0-105 examTest4pass EX0-105 pdf exam
Test4pass EX0-105 braindumps
Test4pass EX0-105 study guides
Test4pass EX0-105 trainning materials
Test4pass EX0-105 simulations
Test4pass EX0-105 testing engine
Test4pass EX0-105 vce
Test4pass EX0-105 torrent
Test4pass EX0-105 dumps
free download EX0-105
Test4pass EX0-105 practice exam
Test4pass EX0-105 preparation files
Test4pass EX0-105 questions
Test4pass EX0-105 answers
http://www.test4pass.com/EX0-105-exam.html The safer.easier way to get EXIN Inc Certification Certification
.




