Exam ISO-IEC-27001-Lead-Auditor Topic 5 Question 355 Discussion
Actual exam question for PECB's ISO-IEC-27001-Lead-Auditor exam
Question #: 355
Topic #: 5
Question #: 355
Topic #: 5
What type of measure involves the stopping of possible consequences of security incidents?
Suggested Answer: C Vote an answer
A repressive measure is a type of measure that involves the stopping of possible consequences of security incidents. A security incident is an event that compromises the confidentiality, integrity, or availability of information assets3. A repressive measure is a measure that aims to prevent or reduce the harm caused by a security incident after it has occurred. Examples of repressive measures include blocking malicious IP addresses, revoking user access rights, isolating infected systems, or restoring data from backups4. Repressive measures are different from preventive measures, which are measures that aim to avoid or reduce the likelihood of a security incident before it occurs. Examples of preventive measures include installing antivirus software, enforcing password policies, encrypting sensitive data, or conducting security awareness training4. Therefore, the correct answer is C. Reference: ISO/IEC 27000:2022, clause 3.25; Lepide.
by Monica at Mar 17, 2026, 07:06 AM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).