PECB Certified ISO/IEC 27001 2022 Lead Auditor exam ISO-IEC-27001-Lead-Auditor Question # 46 Topic 5 Discussion

PECB Certified ISO/IEC 27001 2022 Lead Auditor exam ISO-IEC-27001-Lead-Auditor Question # 46 Topic 5 Discussion

ISO-IEC-27001-Lead-Auditor Exam Topic 5 Question 46 Discussion:
Question #: 46
Topic #: 5

The data center at which you work is currently seeking ISO/IEC27001:2022 certification. In preparation for your initial certification visit a number of internal audits have been carried out by a colleague working at another data centre within your Group. They secured their ISO/IEC 27001:2022 certificate earlier in the year.

You have just qualified as an Internal ISMS auditor and your manager has asked you to review the audit process and audit findings as a final check before the external Certrfication Body arrives.

Which six of the following would cause you concern in respect of conformity to ISO/IEC 27001:2022 requirements?


A.

The audit programme shows management reviews taking place at irregular intervals during the year


B.

Audit reports are not held in hardcopy (i.e. on paper). They are only stored as ".POF documents on the organisation's intranet


C.

The audit programme does not take into account the relative importance of information security processes


D.

The audit programme mandates auditors must be independent of the areas they audit in order to satisfy the requirements of ISO/IEC 27001:2022


E.

Although the scope for each internal audit has been defined, there are no audit criteria defined for the audits carried out to date


F.

Audit reports to date have used key performance indicator information to focus solely on the efficiency of ISMS processes


G.

The audit programme does not reference audit methods or audit responsibilities


Get Premium ISO-IEC-27001-Lead-Auditor Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.