An organization does NOT authenticate the identity of persons that enter the server room, so unauthorized persons can easily gain access to the server. Which control of ISO/IEC 27002 should the organization implement to solve this problem?
According to Control 5.1 Policies for information security, regarding which of the following, among others, should an information security policy contain statements?
An organization has set up a fire alarm. What type of control is this?
What is continual improvement?
Why should an organization integrate information security into project management?
Which situation presented below indicates that the confidentiality of information has been breached?
Which of the following controls should the organization implement to ensure that its approach to managing information security continues to be suitable, adequate and effective?
What should the organization do with regard to the information security roles and responsibilities of an employee who is leaving or changing the job role?
What, among others, should be considered when using cryptography?
What does ISO/IEC 27002 provide?