EXIN ISFS Exam (page: 2)
EXIN Information Security Foundation based on ISO/IEC 27002 exam
Updated on: 12-Feb-2026

Viewing Page 2 of 11

You work for a large organization. You notice that you have access to confidential information that you should not be able to access in your position. You report this security incident to the helpdesk. The incident cycle isinitiated. What are the stages of the security incident cycle?

  1. Threat, Damage, Incident, Recovery
  2. Threat, Damage, Recovery, Incident
  3. Threat, Incident, Damage, Recovery
  4. Threat, Recovery, Incident, Damage

Answer(s): C



Your organization has an office with space for 25 workstations. These workstations are all fully equipped and in use. Due to a reorganization 10 extra workstations are added, 5 of which are used for a call centre 24 hours per day. Five workstations must always be available. What physical security measures must be taken in order to ensure this?

  1. Obtain an extra office and set up 10 workstations. You would therefore have spare equipment that can be used to replace any non-functioning equipment.
  2. Obtain an extra office and set up 10 workstations. Ensure that there are security personnel both in the evenings and at night, so that staff can work there safely and securely.
  3. Obtain an extra office and connect all 10 new workstations to an emergency power supply and UPS (Uninterruptible Power Supply). Adjust the access control system to the working hours of the new staff. Inform the building security personnel that work will also be carried out in the evenings and at night.
  4. Obtain an extra office and provide a UPS (Uninterruptible Power Supply) for the five most important workstations.

Answer(s): C



Which of the following measures is a preventive measure?

  1. Installing a logging system that enables changes in a system to be recognized
  2. Shutting down all internet traffic after a hacker has gained access to the company systems
  3. Putting sensitive information in a safe
  4. Classifying a risk as acceptable because the cost of addressing the threat is higher than the value of the information at risk

Answer(s): C



What is a risk analysis used for?

  1. A risk analysis is used to express the value of information for an organization in monetary terms.
  2. A risk analysis is used to clarify to management their responsibilities.
  3. A risk analysis is used in conjunction with security measures to reduce risks to an acceptable level.
  4. A risk analysis is used to ensure that security measures are deployed in a cost-effective and timely fashion.

Answer(s): D



A well executed risk analysis provides a great deal of useful information. A risk analysis has four
main objectives. What is not one of the four main objectives of a risk analysis?

  1. Identifying assets and their value
  2. Determining the costs of threats
  3. Establishing a balance between the costs of an incident and the costs of a security measure
  4. Determining relevant vulnerabilities and threats

Answer(s): B



What is an example of a security incident?

  1. The lighting in the department no longer works.
  2. A member of staff loses a laptop.
  3. You cannot set the correct fonts in your word processing software.
  4. A file is saved under an incorrect name.

Answer(s): B



Which of the following measures is a corrective measure?

  1. Incorporating an Intrusion Detection System (IDS) in the design of a computer centre
  2. Installing a virus scanner in an information system
  3. Making a backup of the data that has been created or altered that day
  4. Restoring a backup of the correct database after a corrupt copy of the database was written over the original

Answer(s): D



We can acquire and supply information in various ways. The value of the information depends on whether it is reliable. What are the reliability aspects of information?

  1. Availability, Information Value and Confidentiality
  2. Availability, Integrity and Confidentiality
  3. Availability, Integrity and Completeness
  4. Timeliness, Accuracy and Completeness

Answer(s): B



Viewing Page 2 of 11



Share your comments for EXIN ISFS exam with other users:

peter parker 8/10/2023 10:59:00 AM

the exam is listed as 80 questions with a pass mark of 70%, how is your 50 questions related?
Anonymous


Berihun 7/13/2023 7:29:00 AM

all questions are so important and covers all ccna modules
Anonymous


nspk 1/19/2024 12:53:00 AM

q 44. ans:- b (goto setup > order settings > select enable optional price books for orders) reference link --> https://resources.docs.salesforce.com/latest/latest/en-us/sfdc/pdf/sfom_impl_b2b_b2b2c.pdf(decide whether you want to enable the optional price books feature. if so, select enable optional price books for orders. you can use orders in salesforce while managing price books in an external platform. if you’re using d2c commerce, you must select enable optional price books for orders.)
Anonymous


Muhammad Rawish Siddiqui 12/2/2023 5:28:00 AM

"cost of replacing data if it were lost" is also correct.
SAUDI ARABIA


Anonymous 7/14/2023 3:17:00 AM

pls upload the questions
UNITED STATES


Mukesh 7/10/2023 4:14:00 PM

good questions
UNITED KINGDOM


Elie Abou Chrouch 12/11/2023 3:38:00 AM

question 182 - correct answer is d. ethernet frame length is 64 - 1518b. length of user data containing is that frame: 46 - 1500b.
Anonymous


Damien 9/23/2023 8:37:00 AM

i need this exam pls
Anonymous


Nani 9/10/2023 12:02:00 PM

its required for me, please make it enable to access. thanks
UNITED STATES


ethiopia 8/2/2023 2:18:00 AM

seems good..
ETHIOPIA


whoAreWeReally 12/19/2023 8:29:00 PM

took the test last week, i did have about 15 - 20 word for word from this site on the test. (only was able to cram 600 of the questions from this site so maybe more were there i didnt review) had 4 labs, bgp, lacp, vrf with tunnels and actually had to skip a lab due to time. lots of automation syntax questions.
EUROPEAN UNION


vs 9/2/2023 12:19:00 PM

no comments
Anonymous


john adenu 11/14/2023 11:02:00 AM

nice questions bring out the best in you.
Anonymous


Osman 11/21/2023 2:27:00 PM

really helpful
Anonymous


Edward 9/13/2023 5:27:00 PM

question #50 and question #81 are exactly the same questions, azure site recovery provides________for virtual machines. the first says that it is fault tolerance is the answer and second says disater recovery. from my research, it says it should be disaster recovery. can anybody explain to me why? thank you
CANADA


Monti 5/24/2023 11:14:00 PM

iam thankful for these exam dumps questions, i would not have passed without this exam dumps.
UNITED STATES


Anon 10/25/2023 10:48:00 PM

some of the answers seem to be inaccurate. q10 for example shouldnt it be an m custom column?
MALAYSIA


PeterPan 10/18/2023 10:22:00 AM

are the question real or fake?
Anonymous


CW 7/11/2023 3:19:00 PM

thank you for providing such assistance.
UNITED STATES


Mn8300 11/9/2023 8:53:00 AM

nice questions
Anonymous


Nico 4/23/2023 11:41:00 PM

my 3rd purcahse from this site. these exam dumps are helpful. very helpful.
ITALY


Chere 9/15/2023 4:21:00 AM

found it good
Anonymous


Thembelani 5/30/2023 2:47:00 AM

excellent material
Anonymous


vinesh phale 9/11/2023 2:51:00 AM

very helpfull
UNITED STATES


Bhagiii 11/4/2023 7:04:00 AM

well explained.
Anonymous


Rahul 8/8/2023 9:40:00 PM

i need the pdf, please.
CANADA


CW 7/11/2023 2:51:00 PM

a good source for exam preparation
UNITED STATES


Anchal 10/23/2023 4:01:00 PM

nice questions
INDIA


J Nunes 9/29/2023 8:19:00 AM

i need ielts general training audio guide questions
BRAZIL


Ananya 9/14/2023 5:16:00 AM

please make this content available
UNITED STATES


Swathi 6/4/2023 2:18:00 PM

content is good
Anonymous


Leo 7/29/2023 8:45:00 AM

latest dumps please
INDIA


Laolu 2/15/2023 11:04:00 PM

aside from pdf the test engine software is helpful. the interface is user-friendly and intuitive, making it easy to navigate and find the questions.
UNITED STATES


Zaynik 9/17/2023 5:36:00 AM

questions and options are correct, but the answers are wrong sometimes. so please check twice or refer some other platform for the right answer
Anonymous