<< Prev Question Next Question >>

Question 12/51

Scenario 7: InfoSec is a multinational corporation headquartered in Boston, MA, which provides professional electronics, gaming, and entertainment services. After facing numerous information security incidents, InfoSec has decided to establish teams and implement measures to prevent potential incidents in the future Emma, Bob. and Anna were hired as the new members of InfoSec's information security team, which consists of a security architecture team, an incident response team (IRT) and a forensics team Emma's job is to create information security plans, policies, protocols, and training to prepare InfoSec to respond to incidents effectively Emma and Bob would be full-time employees of InfoSec, whereas Anna was contracted as an external consultant.
Bob, a network expert, will deploy a screened subnet network architecture This architecture will isolate the demilitarized zone (OMZ) to which hosted public services are attached and InfoSec's publicly accessible resources from their private network Thus, InfoSec will be able to block potential attackers from causing unwanted events inside the company's network. Bob is also responsible for ensuring that a thorough evaluation of the nature of an unexpected event is conducted, including the details on how the event happened and what or whom it might affect.
Anna will create records of the data, reviews, analysis, and reports in order to keep evidence for the purpose of disciplinary and legal action, and use them to prevent future incidents. To do the work accordingly, she should be aware of the company's information security incident management policy beforehand Among others, this policy specifies the type of records to be created, the place where they should be kept, and the format and content that specific record types should have.
Based on scenario 7. InfoSec contracted Anna as an external consultant. Based on her tasks, is this action compliant with ISO/IEC 27001°

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (51q)
Question 1: Scenario 4: TradeB. a commercial bank that has just entered ...
Question 2: Scenario 3: Socket Inc is a telecommunications company offer...
Question 3: Scenario 6: Skyver offers worldwide shipping of electronic p...
Question 4: An organization has justified the exclusion of control 5.18 ...
Question 5: Which of the situations below can negatively affect the inte...
Question 6: Scenario 1: HealthGenic is a pediatric clinic that monitors ...
Question 7: An organization wants to enable the correlation and analysis...
Question 8: What should an organization allocate to ensure the maintenan...
Question 9: Based on scenario 5. Socket Inc. decided to assign users lo ...
Question 10: Based on scenario 7. what else should Texas H&amp;H Inc. do ...
Question 11: According to scenario 6. Alex used terminology and concepts ...
Question 12: Scenario 7: InfoSec is a multinational corporation headquart...
Question 13: Scenario 8: SunDee is an American biopharmaceutical company,...
Question 14: A company decided to use an algorithm that analyzes various ...
Question 15: Scenario 4: TradeB. a commercial bank that has just entered ...
Question 16: Which statement is an example of risk retention?...
Question 17: Scenario 10: NetworkFuse develops, manufactures, and sells n...
Question 18: Which of the following is NOT part of the steps required by ...
Question 19: Based on scenario 5. Socket Inc. decided to use cloud storag...
Question 20: Scenario 2: Beauty is a cosmetics company that has recently ...
Question 21: Who should verily the effectiveness of the corrective action...
Question 22: Following a repotted event, an Information security event ti...
Question 23: An organization has adopted a new authentication method to e...
Question 24: Scenario 6: Skyver offers worldwide shipping of electronic p...
Question 25: Scenario 6: Skyver offers worldwide shipping of electronic p...
Question 26: Scenario 1: HealthGenic is a pediatric clinic that monitors ...
Question 27: Upon the risk assessment outcomes. Socket Inc. decided to: *...
Question 28: What supports the continual improvement of an ISMS?...
Question 29: Scenario 6: Skyver offers worldwide shipping of electronic p...
Question 30: Based on scenario 10. did invalid Electric provide a valid r...
Question 31: Scenario 9: OpenTech provides IT and communications services...
Question 32: Del&amp;Co has decided to improve their staff-related contro...
Question 33: An organization has implemented a control that enables the c...
Question 34: What risk treatment option has Company A Implemented If it h...
Question 35: Which situation described in scenario 2 Indicates service un...
Question 36: How can Invalid Electric's ensure that Us employees are prep...
Question 37: Which situation presented in scenario 8 is not in compliance...
Question 38: The purpose of control 5.9 inventory of Information and othe...
Question 39: Which approach should organizations use to implement an ISMS...
Question 40: Scenario 5: Operaze is a small software development company ...
Question 41: According to scenario 9, TroNlcon SPEC aimed to eliminate th...
Question 42: Scenario 2: Beauty is a cosmetics company that has recently ...
Question 43: Scenario 3: Socket Inc is a telecommunications company offer...
Question 44: Some of the issues being discussed in the awareness session ...
Question 45: Scenario 6: Skyver offers worldwide shipping of electronic p...
Question 46: An employee of the organization accidentally deleted custome...
Question 47: If an organization wants to monitor operations in real time ...
Question 48: Which situation described in scenario 7 Indicates that Texas...
Question 49: The IT Department of a financial institution decided to impl...
Question 50: 'The ISMS covers all departments within Company XYZ that hav...
Question 51: Which tool is used to identify, analyze, and manage interest...