LEAD-AUDITOR · Question #37
You are an experienced ISMS auditor, currently providing support to an ISMS auditor in training who is carrying out her first initial certification audit. She asks you what she should be verifying…
The correct answer is B. I am going to check that top management have determined the Information Security objectives for C. I am going to check that the Information Security objectives are written down on paper so that E. I am going to check that a completion date has been set for each objective and that there are no. You've hit your limit · resets 4am (America/New_York)
Question
You are an experienced ISMS auditor, currently providing support to an ISMS auditor in training who is carrying out her first initial certification audit. She asks you what she should be verifying when auditing an organisation's Information Security objectives. You ask her what she has included in her audit checklist and she provides the following replies. Which three of these responses would you cause you concern in relation to conformity with ISO/IEC 27001:2022?
Options
- AI am going to check how each Information Security objective has been communicated to those
- BI am going to check that top management have determined the Information Security objectives for
- CI am going to check that the Information Security objectives are written down on paper so that
- DI am going to check that there is a process in place to periodically revisit Information Security
- EI am going to check that a completion date has been set for each objective and that there are no
- FI am going to check that the necessary budget, manpower and materials to achieve each objective
- GI am going to check that all the Information Security objectives are measurable. If they are not
How the community answered
(40 responses)- A3% (1)
- B80% (32)
- D10% (4)
- F5% (2)
- G3% (1)
Explanation
You've hit your limit · resets 4am (America/New_York)
Topics
Community Discussion
No community discussion yet for this question.