nerdexam
PECB

LEAD-AUDITOR · Question #79

You are an experienced audit team leader guiding an auditor in training. Your team is currently conducting a third-party surveillance audit of an organisation that stores data on behalf of external…

The correct answer is A. Confidentiality and nondisclosure agreements C. Information security awareness, education and training D. Remote working arrangements E. The conducting of verification checks on personnel. You've hit your limit · resets 4am (America/New_York)

ISO 27001 Annex A - People Controls

Question

You are an experienced audit team leader guiding an auditor in training. Your team is currently conducting a third-party surveillance audit of an organisation that stores data on behalf of external clients. The auditor in training has been tasked with reviewing the PEOPLE controls listed in the Statement of Applicability (SoA) and mplemented at the site. Select four controls from the following that would you expect the auditor in training to review.

Options

  • AConfidentiality and nondisclosure agreements
  • BHow protection against malware is implemented
  • CInformation security awareness, education and training
  • DRemote working arrangements
  • EThe conducting of verification checks on personnel
  • FThe operation of the site CCTV and door control systems
  • GThe organisation's arrangements for information deletion
  • HThe organisation's business continuity arrangements

How the community answered

(32 responses)
  • A
    78% (25)
  • B
    3% (1)
  • F
    6% (2)
  • G
    9% (3)
  • H
    3% (1)

Explanation

You've hit your limit · resets 4am (America/New_York)

Topics

#people controls#Annex A controls#Statement of Applicability#security awareness and training

Community Discussion

No community discussion yet for this question.

Full LEAD-AUDITOR Practice