APMG-International ISO-IEC-27001-Foundation - ISO/IEC 27001 (2022) Foundation Exam
Total 50 questions
Which statement describes a purpose of monitoring, measurement, analysis and evaluation according to ISO/IEC 27001?
Which is a control title within Annex A of ISO/IEC 27001?
What is the name of the control clause used to control information security breaches within Annex A of ISO/IEC 27001?
Which information is required to be included in the Statement of Applicability?
Which action must top management take to provide evidence of its commitment to the establishment, operation and improvement of the ISMS?
Which action is a required response to an identified residual risk?
Which item is required to be included in an information security policy?
Which aspect of ISO/IEC 27001 requires that contractors know about the organization’s information security policies?
Which statement describes the Classification of information control in Annex A of ISO/IEC 27001?
Which of the following statements about the differences between an internal audit and a certification audit is true?
An internal audit is conducted at planned intervals and a certification audit is conducted annually
An internal audit is known as a 1st party audit and a certification audit is known as a 3rd party audit