nerdexam
PECB

LEAD-AUDITOR · Question #242

You are an experienced ISMS Audit Team Leader, talking to an Auditor in training who has been assigned to your audit team. You want to ensure that they understand the importance of the Check stage of

The correct answer is C. Review the information security management system at planned intervals to ensure its continuing. The management review is a key component of the "Check" stage in the Plan-Do-Check-Act (PDCA) cycle. Its primary purpose is to evaluate the overall ISMS and make strategic decisions for improvement.

ISMS Monitoring and Review

Question

You are an experienced ISMS Audit Team Leader, talking to an Auditor in training who has been assigned to your audit team. You want to ensure that they understand the importance of the Check stage of the Plan-Do-Check-Act cycle in respect of the operation of the information security management system. You do this by asking him to select the answer which best describes the purpose of the check activity 'management review. The purpose of the management review is to: Select 1

Options

  • AAssess the information security management system at random intervals to ensure its continuing
  • BConsider the information security management system at regular intervals to ensure its continuing
  • CReview the information security management system at planned intervals to ensure its continuing
  • DUpdate the information security management system at documented intervals to ensure its

How the community answered

(58 responses)
  • A
    7% (4)
  • B
    2% (1)
  • C
    88% (51)
  • D
    3% (2)

Explanation

The management review is a key component of the "Check" stage in the Plan-Do-Check-Act (PDCA) cycle. Its primary purpose is to evaluate the overall ISMS and make strategic decisions for improvement.

Topics

#PDCA cycle#management review#ISMS operation#ISO/IEC 27001 clause 9

Community Discussion

No community discussion yet for this question.

Full LEAD-AUDITOR Practice