Summer Special Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

Page: 1 / 2
Total 12 questions
Exam Code: ISO-IEC-27002-Foundation                Update: Jun 21, 2026
Exam Name: ISO/IEC 27002 Foundation Exam

PECB ISO/IEC 27002 Foundation Exam ISO-IEC-27002-Foundation Exam Dumps: Updated Questions & Answers (June 2026)

Question # 1

Which control should an organization implement to ensure that the software is written securely and the number of potential vulnerabilities in the software is reduced?

A.

Control 8.29 Security testing in development and acceptance

B.

Control 8.26 Application security requirements

C.

Control 8.28 Secure coding

Question # 2

Which of the following is an example of an organizational asset in cyberspace?

A.

Medical data

B.

Digital customer identity

C.

Intellectual property

Question # 3

According to Control 5.1 Policies for information security, regarding which of the following, among others, should an information security policy contain statements?

A.

Regarding the procedures for recovering from a data breach

B.

Regarding the procedures for handling exemptions and exceptions

C.

Regarding the procedures for using automated information systems

Question # 4

Which control of ISO/IEC 27002 aims to ensure the correct and secure operation of information processing facilities?

A.

Control 7.2 Physical entry

B.

Control 5.37 Documented operating procedures

C.

Control 5.35 Independent review of information security

Question # 5

During which phase of the Plan-Do-Check-Act cycle do organizations maintain and improve the information security management system?

A.

Act

B.

Do

C.

Check

Question # 6

What should the organization do with regard to the information security roles and responsibilities of an employee who is leaving or changing the job role?

A.

It should identify and transfer them to another employee

B.

It should document them in the termination of employment policy

C.

It should outsource them to an external party

Question # 7

What is a PII controller?

A.

A natural person to whom the PII relates

B.

A privacy stakeholder that determines the purpose and means for processing PII besides individuals who use data for personal purposes

C.

A privacy stakeholder that handles PII on behalf of and in accordance with the instructions of a PII controller

Question # 8

Which information security principle is compromised by accidental changes in information?

A.

Availability

B.

Integrity

C.

Confidentiality

Question # 9

In which group of controls does Control 7.9 Security of assets off-premises belong?

A.

Organizational

B.

Physical

C.

Technological

Question # 10

How can organizations manage the security of large networks?

A.

By dividing networks into separate network domains and separating them from the public network

B.

By dividing networks into separate network domains and including them into the public network

C.

By avoiding the integration of information services, users, and information systems into large networks

Page: 1 / 2
Total 12 questions

Most Popular Certification Exams

Payment

       

Contact us

Site Secure

mcafee secure

TESTED 21 Jun 2026