nerdexam
PECB

LEAD-AUDITOR · Question #38

LEAD-AUDITOR Question #38: Real Exam Question with Answer & Explanation

Sign in or unlock LEAD-AUDITOR to reveal the answer and full explanation for question #38. The question stem and answer options stay visible for context.

Question

You are carrying out your first third-party ISMS surveillance audit as an Audit Team Leader. You are presently in the auditee's data centre with another member of your audit team. Your colleague seems unsure as to the difference between an information security event and an information security incident. You attempt to explain the difference by providing examples. Which three of the following scenarios can be defined as information security incidents?

Options

  • AThe organisation's malware protection software prevents a virus
  • BA hard drive is used after its recommended replacement date
  • CThe organisation receives a phishing email
  • DAn employee fails to clear their desk at the end of their shift
  • EA contractor who has not been paid deletes top management ICT accounts
  • FAn unhappy employee changes payroll records without permission
  • GThe organisation fails a third-party penetration test
  • HThe organisation's marketing data is copied by hackers and sold to a competitor

Unlock LEAD-AUDITOR to see the answer

You've previewed enough free LEAD-AUDITOR questions. Unlock LEAD-AUDITOR for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full LEAD-AUDITOR Practice