[Jul-2025] L6M7 Free Sample Questions to Practice One Year Update [Q24-Q41]

Share

[Jul-2025] L6M7 Free Sample Questions to Practice One Year Update

Download L6M7 exam with CIPS L6M7 Real Exam Questions


CIPS L6M7 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Understand data integrity and its impact on procurement and supply: Targeting IT Security Officers, this section focuses on ensuring that all collected information remains accurate (data integrity) while maintaining confidentiality through legal frameworks like GDPR. It assesses strategies for managing disruptions, such as system redundancy.
Topic 2
  • Understand the concept of big data in the global supply chain: This section of the exam measures the skills of Supply Chain Managers and covers understanding big data's role in enhancing supply chain operations. It evaluates how big data transforms procurement and supply functions by leveraging large volumes of diverse data, focusing on skills like "Data Trend Analysis.
Topic 3
  • Understand the impact of cyber security on procurement and supply: This part targets Cybersecurity Experts, exploring how cyber threats affect supply chains by compromising sensitive information through vulnerabilities in software or networks. It involves evaluating technologies to secure systems effectively, emphasizing "Secure Data Transmission.

 

NEW QUESTION # 24
Henry is the Head of IT at Purple Rain Ltd and is presenting a case to the Senior Leadership Team to ask for more investment in the company's IT strategy. Henry believes the company has an issue with data resilience and is asking for more money to be invested in this. He has completed a Business Impact Assessment (BIA) to better understand what data the company holds. Jon is the Head of Procurement and has listened intently to Henry's presentation. He has decided to go back to his department and complete a thorough risk assessment, as he is aware his team holds a lot of data on suppliers and contracts. The CEO of Purple Rain, Roger Nelson, has asked Henry about next steps in order to protect the company from further risks associated with the IT strategy. Data is currently stored on servers located at Purple Rain's Headquarters. The server room is locked at all times of the day and is only accessible to staff members who have a key. The building itself is extremely secure with CCTV systems located both inside the server room and outside it. However, the server room is prone to overheating.
What should Henry's next steps be?

  • A. Complete a Priority Assessment and Recovery Objectives
  • B. Submit a budget request to increase the IT Security budget
  • C. Train all members of staff in the importance of password-protecting their work and the dangers of phishing
  • D. Contract a third-party cloud storage provider to manage the data on behalf of Purple Rain Ltd

Answer: A

Explanation:
Given Henry's focus on data resilience, the next logical step is to complete a Priority Assessment and define Recovery Objectives. This will help identify which data and systems are most at risk and require immediate attention in the Data Resilience Plan. (P.105)


NEW QUESTION # 25
The storage of data by a third party is commonly known as what?

  • A. Cloud
  • B. USB
  • C. Integrated circuit
  • D. Chips

Answer: A

Explanation:
This is The Cloud, which may also be called 'cloud computing' or 'cloud storage.' It is commonly used in mobile phones to store data externally rather than on the device itself.


NEW QUESTION # 26
Which of the following can be used to protect a computer's operating system and hardware and often requires a user to update?

  • A. Firewall
  • B. Firmware
  • C. Internet of Things
  • D. Server

Answer: B


NEW QUESTION # 27
What is the benefit of an organisation using blockchain in data management?

  • A. Data cannot be modified
  • B. It is organisation-specific
  • C. It allows data to be changed easily
  • D. Data is stored centrally

Answer: A

Explanation:
Blockchain ensures data integrity by preventing modifications. If changes are needed, new blocks are added instead of altering existing ones. This enhances transparency and security, as blockchain is decentralized and not vulnerable to a single point of failure. (P.189)


NEW QUESTION # 28
What is the correct order of the 'Fetch-Execute' Cycle?

  • A. Fetch, Execute, Store, Decode
  • B. Fetch, Store, Decode, Execute
  • C. Fetch, Decode, Execute, Store
  • D. Fetch, Execute, Decode, Store

Answer: C

Explanation:
The correct order is Fetch, Decode, Execute, Store. Fetch (find the instruction), Decode (understand it), Execute (carry out the operation), and Store (save the result). A computer can run this cycle over 2.5 million times per second!


NEW QUESTION # 29
Which of the following is a human risk in cybersecurity? Select ALL that apply.

  • A. System overheating
  • B. Obsolescent technology
  • C. Opening unsecure attachments
  • D. Weak passwords
  • E. Malware

Answer: C,D

Explanation:
Human errors, such as using weak passwords and opening insecure attachments, are major risks in cybersecurity. Educating users on best security practices can help mitigate these threats. The other options relate to technical or system risks rather than human behavior. (P.173)


NEW QUESTION # 30
Bruno is the newly appointed Head of Operations of a manufacturing organisation based in Coventry that makes children's toys. The company was established in 1958 and has many years of records of toys sold. Some of the early records are paper-based, but data from the 1990s onwards is computer-based. Bruno believes that as the company acquired the data legally, it should be stored in the office and can be used for marketing purposes. Is this true?

  • A. No - data should not be held any longer than is necessary
  • B. Yes - if the company created the data, they can use it how they like
  • C. No - the old data will not be accurate
  • D. Yes - they can use any data from electronic records

Answer: A

Explanation:
The Data Protection Act states that data should not be retained longer than necessary, typically around six years. Using historical customer data for marketing without consent would likely breach data protection principles. (P.123)


NEW QUESTION # 31
What is the purpose of a 'Logic Gate'?

  • A. To assist in the analysis of large data sets
  • B. To display data in different formats, e.g., videos
  • C. To take input from two transistors and convert it to one output
  • D. To increase the operating speed of a computer

Answer: C

Explanation:
Logic Gates take inputs and convert them to outputs. They perform mathematical calculations, count, compare numbers, and remember data. (P.4)


NEW QUESTION # 32
What is meta-data?

  • A. Data about data
  • B. Data where the origin is unknown
  • C. Large amounts of data
  • D. Data about the future

Answer: A

Explanation:
Metadata is information about data. For example, in a spreadsheet, the data includes entries in cells, while metadata describes the number of rows and columns. (P.73)


NEW QUESTION # 33
The use of data to predict future demand and adjust prices accordingly is known as what?

  • A. Dynamic pricing
  • B. Data-enabled services
  • C. Price skimming
  • D. Data mining

Answer: A

Explanation:
Dynamic pricing adjusts prices based on real-time data, such as airline ticket prices fluctuating based on demand. (P.98)


NEW QUESTION # 34
Fluffy Pillows Ltd has recently expanded its operations and has hired more staff. These staff will work remotely, and because of this, Fluffy Pillows Ltd is in need of buying and upgrading their IT systems. The CEO of Fluffy Pillows is examining the security of currently held data in preparation for the expansion and has recently completed a document that looks into what data is stored where and what the consequences would be if this data were to be stolen or corrupted. In his research, he has found multiple data entries for the same information, which he believes could lead to inaccuracies in data reporting. He is also concerned that the data isn't being stored securely and is unsure whether he should retain some of the confidential personal details on employees who have left the business. He has decided that along with the introduction of new systems, it is important that all members of staff at Fluffy Pillows are aware of the responsibilities of storing data correctly and the risks of cyber attacks.
How can Fluffy Pillows ensure data is accessible for the new staff members who work from home?

  • A. Portable laptops
  • B. USB devices
  • C. Cloud storage
  • D. Network Attached Storage

Answer: C

Explanation:
Cloud storage is the answer. All the new people will be working in different places, so there needs to be a central place for them to access documents. Physical storage options such as USBs, laptops, and network-attached storage devices wouldn't work.
Domain: Scenario


NEW QUESTION # 35
What are the three size characteristics of 'Big Data'? Select THREE.

  • A. Veracity
  • B. Velocity
  • C. Volume
  • D. Verity
  • E. Variety

Answer: B,C,E

Explanation:
The Three Vs of Big Data are:
Volume = Large size
Variety = Different data types (text, images, etc.)
Velocity = The speed at which data is generated


NEW QUESTION # 36
BuyBoy.com is an online retailer that uses predictive analytics and a recommender system to suggest items for users to purchase.
Which types of data would the system use to produce recommendations?

  • A. Historical and health
  • B. Historical and predictive
  • C. Characteristics and credit ratings
  • D. Characteristics and user interactions

Answer: D

Explanation:
Recommender systems use customer characteristics (e.g., age, gender, preferences) and user interactions (e.g., previous searches, purchases, and browsing history) to suggest products. Credit ratings and health data are not typically used for product recommendations in e-commerce.


NEW QUESTION # 37
At what stage in the procurement cycle should a buyer clarify a supplier's cybersecurity policy?

  • A. Pre-qualification
  • B. Contract renewal
  • C. Pre-start meeting
  • D. Contract award

Answer: A

Explanation:
Cybersecurity policies should be evaluated as early as possible in the procurement process. The pre-qualification stage allows buyers to assess suppliers' security practices before inviting them to bid, ensuring that only secure vendors are considered. (P.156)


NEW QUESTION # 38
Henry is the Head of IT at Purple Rain Ltd and is presenting a case to the Senior Leadership Team to ask for more investment in the company's IT strategy. Henry believes the company has an issue with data resilience and is asking for more money to be invested in this. He has completed a Business Impact Assessment (BIA) to better understand what data the company holds. Jon is the Head of Procurement and has listened intently to Henry's presentation. He has decided to go back to his department and complete a thorough risk assessment, as he is aware his team holds a lot of data on suppliers and contracts. The CEO of Purple Rain, Roger Nelson, has asked Henry about next steps in order to protect the company from further risks associated with the IT strategy. Data is currently stored on servers located at Purple Rain's Headquarters. The server room is locked at all times of the day and is only accessible to staff members who have a key. The building itself is extremely secure with CCTV systems located both inside the server room and outside it. However, the server room is prone to overheating.
What would Henry's BIA show?

  • A. How important the data is to business operations
  • B. Why the IT department is underfunded
  • C. What system the data is held on
  • D. The risks of cyberbullying facing the company

Answer: C

Explanation:
A Business Impact Assessment (BIA) identifies the systems in which data is stored, its origin, whether it is transferred elsewhere, and the company's ability to recover data. It does not assess funding issues or non-IT risks like cyberbullying. (P.104)


NEW QUESTION # 39
Zach is the Head of Procurement at a super secret military base. He does not want anyone outside of the base to know what he is procuring or which suppliers he uses as this information could be critical to national defence. He is aware that cyber criminals may be interested in stealing this information so he has decided to disconnect critical machines and systems from the internet. What is this approach to data security known as?

  • A. Non-repudiation
  • B. Unsyncing
  • C. Air-gapping
  • D. Filtering

Answer: C

Explanation:
This is air-gapping. Air-gapping is when you disconnect from an outside network such as the internet. P.171 Domain: 3.1


NEW QUESTION # 40
A person who enters into another person's computer via illegal means for personal gain, for example to steal data which will benefit them personally, is known as what?

  • A. White swan
  • B. White-hat hacker
  • C. Black swan
  • D. Black-hat hacker

Answer: D

Explanation:
This is a black hat hacker. The colour of hat the hacker wears describes their motivation. Black is bad, white is good and grey means they're hacking on behalf of a government. Black swan is about finding patterns in data that don't exist and came up in an earlier chapter. Black-hat hacking is from p.147. I don't think hackers are obliged to wear hats, it's probably just a metaphor, but I've never met one to ask.
Domain: 3.1


NEW QUESTION # 41
......

Real exam questions are provided for CIPS Level 6 Professional Diploma tests, which can make sure you 100% pass: https://troytec.itpassleader.com/CIPS/L6M7-dumps-pass-exam.html

0
0
0
0