placeholder image to represent content

ISO127001

Quiz by Bram

Our brand new solo games combine with your quiz, on the same screen

Correct quiz answers unlock more play!

New Quizalize solo game modes
16 questions
Show answers
  • Q1
    What is ISO127001 all about?
    Requirements and setup of security software (Firewall, Anti-Virus, etc.)
    Set of rules that must be implemented within the company
    Establishing an information security management system
    Handling of physical documents
    60s
  • Q2
    How to achieve Information Security?
    Implement and constantly practice the process of protecting information
    Acquire a security software package and install it within the organization
    Hire a data protection company that will monitor and prevent intrusions and attacks
    60s
  • Q3
    Which types of information are protected by the ISO127001
    Employees private data (bank accounts, salary statements, home addresses)
    Starred company data (clients and suppliers, stakeholders, investor data, etc.)
    All of the information mentioned in every other answer
    Client (contracts, employees emails, etc.) and Respondent data (emails, IP addresses, answers, etc.)
    60s
  • Q4
    What will this mean for our current and future clients?
    All clients will be required to conform with the policies and procedures, established by the ISO127001
    Better protection of client information and higher chances of acquiring new clients
    ISO127001 has no effect on our current and future clients
    Starred will be required to submit a quarterly ISO127001 report to every client
    60s
  • Q5
    Where should the MFA (2FA) be used?
    Services (websites) listed in the ISO127001 policy
    Using MFA (2FA) is considered a bad practice
    Finance-related products only
    Every service (website) that supports it
    60s
  • Q6
    What data should be stored (kept) on work notebook
    Only the data that is currently required in relation to tasks at hand
    ISO127001 doesn't restrict types of information stored on my notebook
    All company data I have access to according to the security policies
    Both company data and my private information
    60s
  • Q7
    Should the access to data (information) be separated
    No, ISO127001 policies do not require data access separation
    No, separating access to data (information) compromises information security
    Yes, based on employees personal decision
    Yes, based on CIA classification
    60s
  • Q8
    When is it appropriate to log in from client's (or public) device
    During mission critical meetings and sales
    Never. Login and (any private information) may be used only on company laptop
    After making sure the client's (or public) device has appropriate anti-virus software installed
    Only if the owner of the device is trustworthy
    60s
  • Q9
    How is "clear screen and clear desk" policy applicable?
    This policy is a recommendation and is not enforced by ISO127001
    Notebook must be locked only if leaving it for more than 10 minutes. Documents should be turned face down to prevent others from seeing the contents.
    Only management must make sure to lock their notebooks if going away and lock documents in a lockable drawer
    Every employee must lock their notebooks if going away and lock documents in a lockable drawer
    60s
  • Q10
    What is a strong password?
    Both requirement must be met - more than 8 characters and at least 1 special character
    Something personal to me like a pet name or mother's maiden name or my favorite football team
    As long as one requirement is met - either more than 8 characters or at least 1 special character
    Password must be picked from the list, provided by the ISO127001 policy
    60s
  • Q11
    What network type should be preferred?
    4G and a password-protected WiFi are both good
    Wifi is preferred. 4G may be used but only in combination with a VPN
    4G is preferred. Wifi may be used but only in combination with a VPN.
    Any network because modern systems enforce encryption
    60s
  • Q12
    Who is responsible for protecting information
    Every employee including myself
    ISO127001 auditor, after granting the certification to Starred
    Information protection is automated and requires no effort from employees
    Security department and management
    60s
  • Q13
    To whom should the security policies be applied?
    All employees
    Top management
    Security department
    All employees, freelancers and suppliers
    60s
  • Q14
    What restriction apply on transport of the data?
    Data transfer is not restricted as long as reliable network is used
    Data transport is prohibited at all times
    Minimize the transport and use only secure, encrypted network
    No restrictions because modern communication technologies and services provide reliable protection
    60s
  • Q15
    When should information security policies be applied?
    Only when visiting clients or working in public spaces
    Always apply both at work and at home
    When deemed necessary at my own discretion
    Anywhere outside the office
    60s

Teachers give this quiz to your class