Big Cyber Monday Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the APMG-International ISO/IEC 27001 ISO-IEC-27001-Foundation Questions and answers with CertsForce

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which action must top management take to provide evidence of its commitment to the establishment, operation and improvement of the ISMS?

Options:

A.

Communicating feedback from interested parties to the organization


B.

Ensuring information security objectives are established


C.

Producing a risk assessment report


D.

Implementing the actions from internal audits


Expert Solution
Questions # 2:

Identify the missing word in the following sentence.

The organization shall determine the [ ? ] of interested parties relevant to information security.

Options:

A.

requirements


B.

number


C.

structure


D.

influence


Expert Solution
Questions # 3:

Which activity is an operational planning and control requirement?

Options:

A.

Review the consequences of unintended changes


B.

Perform information security risk assessments at planned intervals


C.

Scheduling of second party audits


D.

Document information security objectives


Expert Solution
Questions # 4:

What is required to be reported by the Information security event reporting control?

Options:

A.

Information disclosure


B.

Unauthorized access


C.

Asset disposal


D.

Observed or suspected events


Expert Solution
Questions # 5:

Who determines the number of days required for a certification audit?

Options:

A.

The management representative from the organization to be audited


B.

The external auditor from the Certification Body who will undertake the audit


C.

The lead internal auditor from the organization to be audited


D.

Both the management representative and the external auditor together


Expert Solution
Questions # 6:

What is a requirement for a corrective action made in response to a nonconformity?

Options:

A.

They are proportionate to the likelihood of the nonconformity recurring


B.

They are appropriate to the effects of the nonconformity


C.

They do NOT change the organization's information security policies


D.

They always eliminate the cause of the nonconformity


Expert Solution
Questions # 7:

What activity is done first when preparing for an initial certification audit?

Options:

A.

Agree the scope of the ISMS with the Certification Body auditor


B.

Provide documents to the Certification Body auditor for the Stage 1 audit


C.

Provide evidence that nonconformities from an internal audit have been actioned


D.

Provide records to the Certification Body auditor for the Stage 2 audit


Expert Solution
Questions # 8:

When are the information security policies required to be reviewed, according to the Policies for information security control?

Options:

A.

Every six months


B.

Annually


C.

According to a schedule defined by the Certification Body


D.

At planned intervals and if significant changes occur


Expert Solution
Questions # 9:

Which item is required to be considered when defining the scope and boundaries of the information security management system?

Options:

A.

The dependencies between activities performed by the organization


B.

The level of quality to which the ISMS must adhere


C.

The lessons learned from the information security experiences of other organizations


D.

The regular activities necessary to maintain and improve the ISMS


Expert Solution
Questions # 10:

Which of the following statements about the relationship between ISO/IEC 27001 and ISO/IEC 27002 is true?

    ISO/IEC 27002 provides implementation advice on the controls selected during the ISO/IEC 27001 information security risk management process

    ISO/IEC 27002 provides a process for information security risk management which implements the requirements of ISO/IEC 27001

Options:

A.

Only 1 is true


B.

Only 2 is true


C.

Both 1 and 2 are true


D.

Neither 1 or 2 is true


Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions