PECB
LEAD-IMPLEMENTER · Question #41
LEAD-IMPLEMENTER Question #41: Real Exam Question with Answer & Explanation
The correct answer is B. The justification is not acceptable, because it does not reflect the purpose of control 5.18. See the full explanation below for the reasoning.
Question
An organization has justified the exclusion of control 5.18 Access rights of ISO/IEC 27001 in the Statement of Applicability (SoA) as follows: "An access control reader is already installed at the main entrance of the building." Which statement is correct'
Options
- AThe justification for the exclusion of a control is not required to be included in the SoA
- BThe justification is not acceptable, because it does not reflect the purpose of control 5.18
- CThe justification is not acceptable because it does not indicate that it has been selected based on
Community Discussion
No community discussion yet for this question.