EX0105 Information Security Foundation based on ISO/IEC 27002 Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

Following a severe data breach resulting from the unauthorized integration of a novel, unvetted software module into the live operational network, the chief information security officer (CISO) of Veridian Dynamics is tasked with formulating a robust response. The breach led to the compromise of sensitive customer financial data. Preliminary investigations reveal that the development team bypassed standard security validation gates and change control procedures to expedite deployment, a clear deviation from established organizational policies and the spirit of ISO/IEC 27002 controls such as Annex A.14.2.5 (Secure system engineering principles). What is the most crucial strategic action Veridian Dynamics must undertake to prevent similar incidents and reinforce its information security posture?

Conduct a comprehensive review and enhancement of the organization's change management and software development lifecycle security protocols, including mandatory pre-deployment risk assessments and independent security testing.
Immediately deploy advanced intrusion detection systems and enhance endpoint security solutions across all critical systems to detect and block future unauthorized access attempts.
Initiate a full forensic investigation into the breach to identify all compromised data and notify all affected customers and relevant regulatory bodies as per data protection laws like GDPR.
Implement mandatory security awareness training for all employees, focusing on the importance of adhering to established IT policies and procedures.

About the EX0105 Information Security Foundation based on ISO/IEC 27002 Certification

These free practice questions are designed to help you assess your readiness for the EX0105 Information Security Foundation based on ISO/IEC 27002 exam by Red Hat. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.