Multiple Choice
Which of the following is the primary purpose of ISO/IEC 27001:2005?
A) Use within an organization to formulate security requirements and objectives
B) Implementation of business-enabling information security
C) Use within an organization to ensure compliance with laws and regulations
D) To enable organizations that adopt it to obtain certification
Correct Answer:

Verified
Correct Answer:
Verified
Q48: The data access principle that ensures no
Q49: Under what circumstances should access controls be
Q50: There are seven access controls methodologies categorized
Q51: Which of the following is NOT a
Q52: According to COSO,internal control is a process
Q54: A <U>security</U> monitor is a conceptual piece
Q55: Which of the following provides advice about
Q56: A TCSEC-defined covert channel,which transmit information by
Q57: Which security architecture model is based on
Q58: A framework or security model customized to