nerdexam
PECB

LEAD-AUDITOR · Question #216

To verify conformity to control 8.15 Logging of ISO/IEC 27001 Annex A, the audit team verified a sample of server logs to determine if they can be edited or deleted. Which audit procedure was used?

The correct answer is A. Analysis. The audit procedure used here is "analysis." The audit team analyzed server logs to verify if they can be edited or deleted, focusing on evaluating the logs' properties and the controls over their manipulation to ensure they comply with ISO/IEC 27001 requirements.

Audit Procedures and Techniques

Question

To verify conformity to control 8.15 Logging of ISO/IEC 27001 Annex A, the audit team verified a sample of server logs to determine if they can be edited or deleted. Which audit procedure was used?

Options

  • AAnalysis
  • BSampling
  • CObservation

How the community answered

(23 responses)
  • A
    78% (18)
  • B
    17% (4)
  • C
    4% (1)

Explanation

The audit procedure used here is "analysis." The audit team analyzed server logs to verify if they can be edited or deleted, focusing on evaluating the logs' properties and the controls over their manipulation to ensure they comply with ISO/IEC 27001 requirements.

Topics

#audit procedures#analysis technique#logging controls#ISO/IEC 27001 Annex A 8.15

Community Discussion

No community discussion yet for this question.

Full LEAD-AUDITOR Practice