Black Friday Biggest Discount Flat 70% Offer - Ends in 0d 00h 00m 00s - Coupon code: 70diswrap

PECB ISO-IEC-20000-Foundation Dumps

ISO/IEC 20000 Foundation Exam Questions and Answers

Question 1

What is the purpose of information security controls?

Options:

A.

To enforce the information security policy

B.

To monitor information security incidents

C.

To control access to the services

D.

To address identified information security risks

Question 2

What do the principles Adapt and Adopt mean?

Options:

A.

Adapt means changing tne ISSO/IEC 20000-1 standard to meet the organization's needs.Adopt means implementing the ISSO/IEC 20000-1 standard in this changed way

B.

Adapt means tailoring the ISSO/IEC 20000-1 standard to the needs of the organization. Adopt means using any service management guidance

C.

Adapt means taking ITIL guidance Adopt means using that guidance to conform to the requirements from the ISO/IEC 20000 standard

D.

Adapt means using and tailoring any service management guidance. Adopt means using that to create the Service Management practices

Question 3

When managing a major incident, what is one of the activities that needs to be performed?

Options:

A.

Keep top management informed

B.

Initiate problem management activities

C.

Escalate the incident

D.

Involve the customer

Question 4

Which document defines the scope of services to be delivered by an external supplier who implements and operates some parts of the service management processes?

Options:

A.

A contract agreed with the service provider organization

B.

A contract agreed with the customers

C.

A list of service level targets agreed with the customers

D.

A list of service level targets agreed with the service provider organization

Question 5

What should be done to handle risks and opportunities?

Options:

A.

Avoid, reduce, and transfer

B.

Plan, do, check, and act using Deming's cycle

C.

Record, classify, fulfill, and close

D.

Determine, document, and plan actions

Question 6

What is a responsibility of the organization regarding supplier management as defined in ISO/IEC 20000-1?

Options:

A.

To ensure that supplier processes and procedures are defined

B.

To ensure that contracts with external suppliers are accessed for alignment against SLAs ofcustomers

C.

To ensure that subcontracted suppliers meet contractual requirements in all circumstances

D.

To ensure that a process exists for the procurement of suppliers

Question 7

What process, other than business relationship management, reviews service performance with the customer?

Options:

A.

Service Level management

B.

Budgeting and accounting for services

C.

Service Reporting

D.

Service availability management

Question 8

Which is not an example of configuration information for a CI?

Options:

A.

Relationship with other Cis

B.

Unique identification

C.

Feature of a service

D.

Status

Question 9

Identify the missing words in the following sentence. The definition of the scope of the SMS shall include the services in scope and the [???] managing and delivering the services.

Options:

A.

name of the organization

B.

names of suppliers involved in

C.

number of resources required for

D.

service management processes used for

Question 10

How are ISO/IEC 20000 Parts 1, 2, and 3 used?

Options:

A.

Parts 2 and 3 provide advice to help an IT service provider conform to the requirements of Part 1 in an effective way

B.

Part 3 only applies to outsourcing organizations, but Parts 1 and 2 can be used by any service provider

C.

A typical service provider starts by conforming to Part 1 and then moves on to conform with Parts 2 and 3

D.

It is mandatory for a service provider to conform to all parts of the standard

Question 11

One of the activities required for effective planning, coordination, and evaluation of requested changes is assessing the impact and required resources. Which process or function is responsible for this activity?

Options:

A.

Service desk

B.

Release and deployment management

C.

Change management

D.

Configuration management

Question 12

Which audit, performed by the Registered Certification Body, is required to be carried out at least annually?

Options:

A.

Internal audit

B.

Recertificat ion audit

C.

Surveillance audit

D.

Gap analysis audit

Question 13

What is the relationship between ISO/IEC 20000-1, ISO 9001 and ISO/IEC 27001?

Options:

A.

Demonstration of conformance for ISO/IEC 20000-1 Information security management requires that ISO/IEC 27001 processes are used

B.

Organizations can only be certified to one of them at a time

C.

Certification of ISO 9001 and ISO/IEC 27001 Is a pre-requisite to applying for ISO/IEC 20000-1 certification

D.

The management systems of all three may be integrated

Question 14

How many years is an ISO/IEC 20000-1 certificate valid for the Certification scheme?

Options:

A.

One

B.

Two

C.

Three

D.

Five

Question 15

at is the difference between a nonconformity and an observation?

Options:

A.

A nonconformity identifies that a requirement is NOT being correctly met, whereas an observation identifies a recommendation for improvement

B.

A nonconformity can be identified by both internal and external auditors, but an observation can only be identified by an internal auditor

C.

They identify different levels of defect, and if either of them are identified during an audit then certification ^ CANNOT be granted

D.

They are different names for the same thing

Page: 1 / 5
Total 53 questions