PECB
LEAD-AUDITOR · Question #106
Which two of the following are valid audit conclusions?
The correct answer is D. The ISMS policy has been effectively communicated to the organisation E. The organisation's ISMS objectives meet the requirements of ISO/IEC 27001:2022. You've hit your limit · resets 4am (America/New_York)
Audit Reporting
Question
Which two of the following are valid audit conclusions?
Options
- AISMS induction training does not provide guidance on malware prevention
- BThe risk register had not been updated since June 202X
- CCorrective action was outstanding for two internal audits
- DThe ISMS policy has been effectively communicated to the organisation
- EThe organisation's ISMS objectives meet the requirements of ISO/IEC 27001:2022
- FThe schedule of applicability was based on the 2013 edition of ISO/IEC 27001, not the 2022
How the community answered
(40 responses)- B3% (1)
- C5% (2)
- D90% (36)
- F3% (1)
Explanation
You've hit your limit · resets 4am (America/New_York)
Topics
#audit conclusions#audit findings#ISMS conformity#audit terminology
Community Discussion
No community discussion yet for this question.