Red HatFree

EX0105 Information Security Foundation based on ISO/IEC 27002 Free Practice Test — 30 Questions

This practice bank exercises the critical knowledge and decision-making required for the EX0105 exam. It focuses on applying ISO/IEC 27002 controls to realistic scenarios involving change management, incident response, access control, and regulatory compliance. A recurring theme is the behavioral competency of Adaptability and Flexibility, essential for handling novel threats, resource constraints, and shifting priorities. Questions test the ability to prioritize actions—such as isolating systems during a breach, revising policies after a deployment failure, or balancing security with operational efficiency. Learners must interpret scenarios, identify underlying security weaknesses, and choose responses aligned with ISO 27002 principles like least privilege, risk assessment, and continuous improvement.

30
practice questions
20
recall cards
30
explanations
0
sign-ups required
Exam-focused analysis

What this EX0105 Information Security Foundation based on ISO/IEC 27002 practice set measures

This is an analysis of the practice bank, not a claim about the vendor's live exam blueprint. Use it to identify the knowledge, judgment, and recall patterns exercised here, then verify your coverage against the current official exam guide.

Key ISO/IEC 27002 Controls Referenced

The practice bank heavily references several ISO/IEC 27002:2022 controls. Understanding these is vital for answering correctly. Annex A.8 (Asset Management) and A.9 (Access Control) appear frequently, especially A.8.1.3 (Protection of records), A.9.1.2 (Access to information and facilities), and A.9.2.3 (Management of privileged access rights). Incident management controls (A.5.24, A.5.26) guide responses to breaches and zero-days. Change management and secure engineering (A.8.1.3, A.14.2.5) are central to scenario 1. Additionally, controls on security awareness (6.3) and monitoring (8.16, 8.17) appear. The ability to map scenarios to these controls is a key skill tested.

  • Change management failures often align with A.8.1.3 and A.14.2.5 violations.
  • Incident response decisions should follow A.5.24 (Incident management) and A.5.26 (Reporting).
  • Access control friction points to A.9 controls, requiring balance between security and usability.

Behavioral Competencies Under Test

A major theme across the practice bank is behavioral competencies, particularly Adaptability and Flexibility. This competency governs how security professionals respond to evolving threats, policy changes, and resource constraints. Questions 3, 12, 14, 16, 18, 19, 20, 23, 26, and 29 all have this as the correct answer. The competency involves adjusting priorities, handling ambiguity, maintaining effectiveness during transitions, and pivoting strategies. Leadership and communication are also tested in scenarios requiring team guidance and stakeholder updates. The exam expects candidates to recognize when a situation demands a flexible, adaptive mindset over rigid adherence to protocols.

  • Adaptability is crucial when confronting novel malware, zero-days, or regulatory shifts.
  • Effective incident response often requires pivoting strategies as new information emerges.
  • Communication skills are tested when explaining changes to non-technical stakeholders.

Incident Management Principles

Incident management scenarios dominate the practice bank. Key principles include immediate containment (isolation), root cause analysis, and communication. In ransomware attacks (questions 2, 15), isolating affected systems is the critical first step to prevent propagation. For unknown zero-days (questions 20, 27), the response must combine patching, forensic analysis, and threat intelligence sharing. The practice bank emphasizes that learning from incidents (question 11) and updating policies based on lessons learned is a continuous improvement process consistent with ISO 27002. Understanding the priority of containment over eradication or recovery is essential.

  • Isolation is the highest priority during active breaches to limit damage.
  • Root cause analysis should focus on systemic gaps, not blame individuals.
  • Incident response plans must be flexible to handle novel attack vectors.

Strategic Risk Prioritization

Several questions test the ability to prioritize competing demands, such as when critical vulnerabilities and regulatory compliance requirements clash (question 9). The correct approach is to allocate resources to immediate high-risk threats (like patching a zero-day) while planning phased compliance efforts. Questions 4 and 22 highlight the need to balance security controls with operational efficiency, advocating for joint review sessions and exception processes rather than rigid enforcement. When faced with budget cuts (question 6), the recommended strategy is to optimize existing resources through upskilling and open-source tools. These decisions reflect a risk-based approach central to ISO 27002.

  • Immediate threats like zero-days take precedence over long-term compliance projects.
  • Access controls should be reviewed collaboratively to avoid hindering productivity.
  • Resource constraints require creative solutions such as upskilling and leveraging free tools.
Active recall deck

Practice EX0105 Information Security Foundation based on ISO/IEC 27002 with real flashcards

Read the prompt, commit to an answer, then flip the card. Move through the deck at your own pace and repeat any topic that does not come back quickly.

20 free cards

Card 1 of 20

1 reviewed this session

Static practice bank

Start the 30-question diagnostic

The complete question bank is embedded in this pre-rendered page. There is no database request or second content download when you begin.

Question 1 of 30

Following a severe data breach resulting from the unauthorized integration of a novel, unvetted software module into the live operational network, the chief information security officer (CISO) of Veridian Dynamics is tasked with formulating a robust response. The breach led to the compromise of sensitive customer financial data. Preliminary investigations reveal that the development team bypassed standard security validation gates and change control procedures to expedite deployment, a clear deviation from established organizational policies and the spirit of ISO/IEC 27002 controls such as Annex A.14.2.5 (Secure system engineering principles). What is the most crucial strategic action Veridian Dynamics must undertake to prevent similar incidents and reinforce its information security posture?

1 correct answers

Study workflow

Turn one EX0105 Information Security Foundation based on ISO/IEC 27002 attempt into a study plan

  1. 1

    Map Scenarios to ISO 27002 Controls

    For each practice question, identify the primary ISO 27002 control(s) involved. For example, a breach from unvetted software relates to change management (A.14.2.5). This habit builds recognition of control applicability.

  2. 2

    Focus on Behavioral Competencies

    Many correct answers hinge on behavioral competencies like Adaptability. When a scenario describes uncertainty or change, consider whether the best response is procedural or requires a flexible mindset. Review the competency definitions in the explanations.

  3. 3

    Analyze Incorrect Options

    After choosing an answer, read the explanation for why other choices are wrong. This deepens understanding of principles like least privilege, isolation priority, and the dangers of punitive actions after incidents.

  4. 4

    Practice Prioritization Drills

    Cover the answer choices and write your own prioritized action list for each scenario. Then compare with the correct answer. This trains quick decision-making under pressure, crucial for the exam.

  5. 5

    Create Summary Notes

    Compile key takeaways: list of controls, behavioral competencies, and common phrases used in correct answers (e.g., 'conduct a root cause analysis,' 'isolate affected systems'). Review these before test day.

FAQ

Questions about this exam practice page

Clear boundaries on what the bank covers, how to use it, and where official vendor information still matters.

What is the main focus of ISO/IEC 27002?+

ISO/IEC 27002 provides guidelines for information security controls, covering areas like access control, cryptography, physical security, and incident management. It is a supporting standard for implementing an Information Security Management System (ISMS) based on ISO 27001.

How does this practice bank reflect the exam's emphasis on adaptability?+

The bank frequently presents scenarios where threat landscapes shift unexpectedly (e.g., zero-day exploits, new regulations). The correct answer often requires adaptability—adjusting strategies, embracing uncertainty, and pivoting from plans. This mirrors the real-world need for flexible security professionals.

What are the key behavioral competencies tested in this practice set?+

The primary competency is Adaptability and Flexibility, which appears in over ten questions. Leadership Potential and Communication Skills are also tested, especially when guiding teams through change or explaining security decisions to executives.

How should I approach scenario-based questions on the exam?+

First, identify the core issue (e.g., a new vulnerability, access control friction, or resource trade-off). Then recall relevant ISO 27002 controls and principles. Finally, select the action that balances security with operational needs, often favoring containment and risk-based prioritization.

What is the role of change management in ISO 27002?+

Change management controls (e.g., A.14.2.5) ensure that changes to information systems are assessed for security impacts, approved, and tested before deployment. The practice bank shows that bypassing these processes leads to breaches, emphasizing the need for structured change governance.

Keep studying

Build the next review session

Browse another free bank or use the study strategy guide to turn your misses into spaced review.