EX0-105 Exam Questions
138 real EX0-105 exam questions with expert-verified answers and explanations. Page 3 of 3.
- Question #103
The term `big data' is commonly used. However data itself has less (or no) value for an organization. Which process adds value to the data and turns data into `information'?
- Question #104
Lightning strikes the data center and the power surge destroys several servers. What type of threat is this?
- Question #105
What is the purpose of authentication?
- Question #106
Your company is concerned about the effect of global warming on sea levels and asks you to make preparations that prevents downtime of the billing process. What will you create?
- Question #107
What is the most common risk strategy besides Risk bearing and Risk neutral?
- Question #108
A Dutch company is processing information from Dutch civilians; this implies applicability of some Dutch regulations regarding the privacy of these civilians. The company is mandat...
- Question #109
Which security measure is not an organizational level security measure?
- Question #110
Which legislation regulates the storage and destruction of archive documents?
- Question #111
Which threat can materialize as a result of the absence of physical security?
- Question #112
Someone sends an e-mail. The sender wants the recipient to be able to verify who wrote and sent the email. What does the sender attach to the email?
- Question #113
An employee detects abnormal behavior of her desktop computer. After reporting to the system administrator and a first investigation, the system administrators decide to get some h...
- Question #114
Two friends want to exchange a confidential document. It is important that eavesdroppers cannot see this information. Furthermore the receiver should be able to validate the sender...
- Question #115
Which regulation is only applicable for United States public companies (e.g. listed on the New York Stock Exchange)?
- Question #116
A marketing employee accidentally e-mails a spreadsheet with all the company's clients, their personal and commercial data, to the wrong email address. Who determines the value of...
- Question #117
What is not a criteria in the review process where it is determined whether segregation of duties is applicable for an employee?
- Question #118
What is the purpose of a Disaster Recovery Plan (DRP)?
- Question #119
The incident cycle has four stages. Which stage follows the Threat stage?
- Question #120
Two friends want to exchange a confidential document by e-mail. They decide to use cryptography to protect the confidentiality of the document. To be able to encrypt alid decrypt t...
- Question #121
What is not a category for security measures?
- Question #122
What is `a potential cause of an unwanted incident, which may result in harm to a system or organization' called?
- Question #123
You are the owner of the courier company SpeeDelivery. You employ a few people who, while waiting to make a delivery, can carry out other tasks. You notice, however, that they use...
- Question #124
Why is air-conditioning placed in the server room?
- Question #125
Who is authorized to change the classification of a document?
- Question #126
The company Midwest Insurance has taken many measures to protect its information. It uses an Information Security Management System, the input and output of data in applications is...
- Question #127
What is an example of a physical security measure?
- Question #128
What physical security measure is necessary to control access to company information?
- Question #129
Some threats are caused directly by people, others have a natural cause. What is an example of an intentional human threat?
- Question #130
What is the definition of the Annual Loss Expectancy?
- Question #131
What is the most important reason for applying segregation of duties?
- Question #132
A non-human threat for computer systems is a flood. In which situation is a flood always a relevant threat?
- Question #133
Why is compliance important for the reliability of the information?
- Question #134
What is the main reliability aspect of information besides Confidentiality and Integrity?
- Question #135
An information security incident has several stages which together are known as the incident cycle. At different stages within this cycle different kinds of security measures are a...
- Question #136
What is accomplished if reports are assigned the appropriate grading?
- Question #137
Of which concept is `measures taken to safeguard an information system from attacks' the definition?
- Question #138
What is the physical equivalent of the logical information security measure Intrusion Detection System (IDS)?
- Question #139
An employee is about to lose his job and decides to delete as many documents as possible from the network storage server. In which main threat category does this threat belong?
- Question #140
What are the two main types of damage, resulting from incidents?