Here are all the actual test exam dumps for IT exams. Most people prepare for the actual exams with our test dumps to pass their exams. So it's critical to choose and actual test pdf to succeed.

Exam ISO-IEC-27001-Lead-Implementer Topic 5 Question 101 Discussion

Actual exam question for PECB's ISO-IEC-27001-Lead-Implementer exam
Question #: 101
Topic #: 5
NoAVision ' s security team identified a threat scenario involving the forging of user rights within the IAM system, which could enable unauthorized individuals to escalate privileges and access restricted data. The team categorized it under a specific threat type that required targeted mitigation.
In Scenario 1, the identified threat falls under which threat category?

Suggested Answer: A Vote an answer

According to ISO/IEC 27005:2022 Annex C, threats are grouped into categories including human actions (deliberate or accidental acts by people), technical failures (hardware or software malfunctions), and environmental events. The forging of user rights - where a malicious actor intentionally manipulates the IAM system to escalate privileges - is a deliberate human action. This falls under the " Human actions " threat category, which includes unauthorized access, misuse of privileges, identity fraud, and social engineering. " Compromise of functions or services " relates to denial of service or service disruption. " Infrastructure failures " refers to physical or technical breakdowns. Since the threat originates from an intentional human decision to forge credentials, Human actions is the correct classification per ISO/IEC
27005 threat taxonomy.

by Emily at May 17, 2026, 02:27 AM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.