nerdexam
PECB

ISO-IEC-27001-LEAD-AUDITOR · Question #197

ISO-IEC-27001-LEAD-AUDITOR Question #197: Real Exam Question with Answer & Explanation

Sign in or unlock ISO-IEC-27001-LEAD-AUDITOR to reveal the answer and full explanation for question #197. The question stem and answer options stay visible for context.

Question

You are carrying out your first third-party ISMS surveillance audit as an audit team leader. You are presently in the auditee's data centre with another member of your audit team and the organisation's guide. You request access to a locked room protected by a combination lock and iris scanner. The room contains several rows of uninterruptable power supplies along with several data cabinets containing client-supplied equipment, predominantly servers, and switches. You note that there is a gas-based fire extinguishing system in place. A label indicates that the system requires testing every 6 months however the most recent test recorded on the label was carried out by the manufacturer 12 months ago. Based on the scenario above which two of the following actions would you now take?

Options

  • ADetermine if requirements for recording fire extinguisher checks have been revised within the last
  • BMake a note to ask the site maintenance manager for evidence that a fire extinguishing system
  • CProviding water-based extinguishers are accessible in the room, take no further action as these
  • DRaise a nonconformity against control A.5.7 'threat intelligence' as the organisation has not
  • ERaise a nonconformity against control A.7.11 'supporting utilities' as information processing
  • FRequire the guide to initiate the organisation's information security incident process

Unlock ISO-IEC-27001-LEAD-AUDITOR to see the answer

You've previewed enough free ISO-IEC-27001-LEAD-AUDITOR questions. Unlock ISO-IEC-27001-LEAD-AUDITOR for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full ISO-IEC-27001-LEAD-AUDITOR Practice