Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

PECB ISO-IEC-27001-Lead-Implementer Exam - Topic 1 Question 10 Discussion

It is allowed that employees and contractors are provided with an anonymous reporting channel to report violations of information security policies or procedures (''whistle blowing'')
A) True
B) False

PECB ISO-IEC-27001-Lead-Implementer Exam - Topic 1 Question 10 Discussion

Actual exam question for PECB's ISO-IEC-27001-Lead-Implementer exam
Question #: 10
Topic #: 1
[All ISO-IEC-27001-Lead-Implementer Questions]

It is allowed that employees and contractors are provided with an anonymous reporting channel to report violations of information security policies or procedures (''whistle blowing'')

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Dallas
8 months ago
True, it's a good way to encourage reporting.
upvoted 0 times
...
Audria
8 months ago
Wait, really? I thought anonymity would be a problem.
upvoted 0 times
...
Beata
9 months ago
Wow, I didn't know that was allowed!
upvoted 0 times
...
Donte
9 months ago
I disagree, it could lead to false accusations.
upvoted 0 times
...
Chantell
9 months ago
That's definitely true! Whistleblowing is important for security.
upvoted 0 times
...
Gerald
9 months ago
I thought it was false because there are some regulations that might not allow for anonymous reporting. But I could be wrong!
upvoted 0 times
...
Benedict
9 months ago
I feel like I saw a similar question in our practice exam. I think the answer was true there too.
upvoted 0 times
...
Felicia
9 months ago
I'm not entirely sure. I remember something about whistleblowing policies, but I can't recall if anonymity was specifically mentioned.
upvoted 0 times
...
My
9 months ago
I think it's true that employees can report violations anonymously. We discussed this in class, right?
upvoted 0 times
...
Rolland
9 months ago
Hmm, I'm not entirely sure about this one. I know project network diagrams are used to show dependencies, but I'm not confident that's the right tool for communicating risk causes. I'll have to think this through carefully.
upvoted 0 times
...
Melda
9 months ago
I'm not too familiar with the JD Edwards EnterpriseOne IoT Orchestrator, so I'll have to think this through carefully.
upvoted 0 times
...
Viola
10 months ago
I think I remember something about banks being exempt if they have specific procedures in place for compliance, but I'm not entirely sure.
upvoted 0 times
...

Save Cancel