Who determines the number of days required for a certification audit?
What is required to be reported by the Information security event reporting control?
Who is required to ensure that staff are supported so that they can contribute to the information security management system?
Which audit activity related to ISO/IEC 27001 may be carried out by a practitioner?
Which of the following statements about the relationship between ISO/IEC 27001 and ISO/IEC 27002 is true?
ISO/IEC 27002 provides implementation advice on the controls selected during the ISO/IEC 27001 information security risk management process
ISO/IEC 27002 provides a process for information security risk management which implements the requirements of ISO/IEC 27001
Which statement about the conduct of audits is true?
In which clause would the requirements for internal audit be found?
Which action is an organization required to take to ensure that personnel are competent to perform their assigned tasks within the ISMS?
What is a requirement for a corrective action made in response to a nonconformity?
What is the name of the control clause used to control information security breaches within Annex A of ISO/IEC 27001?