Pre-Summer Special Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

Page: 1 / 2
Total 12 questions
Exam Code: I27001F                Update: Apr 30, 2026
Exam Name: Certified ISO/IEC 27001:2022 Foundation

CertiProf Certified ISO/IEC 27001:2022 Foundation I27001F Exam Dumps: Updated Questions & Answers (May 2026)

Question # 1

What does ISO/IEC 27001:2022 require for the control of documented information?

A.

A person designated by top management with expertise to control documented information

B.

Acquisition of a set of information security tools for effective documented information control

C.

A consultancy to accurately perform documented information control

D.

Appropriate protection, for example, against loss of confidentiality, improper use, or loss of integrity

Question # 2

In the context of clause 6.1 actions to address risks and opportunities, the weakness of an asset or control that can be exploited by a threat is known as:

A.

Threat

B.

Risk

C.

Vulnerability

D.

Impact

Question # 3

Within the ISMS, communicating the importance of effective information security management and of conforming to the ISMS requirements is a responsibility of:

A.

The IT Security Manager

B.

Top management

C.

The IT Manager

D.

The quality management representative

Question # 4

Which of the following options should be included in the ISMS policy?

A.

The name of the intrusion detection system

B.

The company history and the motivation for implementing the ISMS

C.

The information security objectives

D.

The results of previous audits

Question # 5

Which statement describes a critical success factor for an Information Security Management System ISMS?

A.

Hiring an information security coordinator

B.

Implementing a measurement system used to evaluate information security management performance and provide suggestions for improvement

C.

Performing a second-party audit

D.

Appointing at least two internal auditors for the information security system

Question # 6

According to ISO/IEC 27001:2022, is it necessary to ensure that successive information security risk assessments produce consistent, valid, and comparable results?

A.

It is only an observation to keep in mind when auditing the management system

B.

It is a requirement to be fulfilled

C.

It is a recommendation, but not a requirement

D.

None of the above

Question # 7

During the operation of the ISMS, what is a requirement for information security objectives?

A.

Develop improvement plans using ISO/IEC 27002 to achieve the information security objectives

B.

Maintain documented information about the objectives

C.

Ensure that the objectives are consistent with the information security policy

D.

Establish objectives for relevant functions and levels

Question # 8

Identify the missing words in the following sentence.

The organization shall establish, ________, maintain, and continually improve an information security management system.

A.

implement

B.

administer

C.

monitor

D.

exploit

Question # 9

What does ISO/IEC 27001:2022 require in order for top management to demonstrate leadership and commitment with respect to the Information Security Management System?

A.

Ensuring that the information security policy and information security objectives are established and are compatible with the strategic direction of the organization

B.

Hiring a consultancy to determine the best way to do it

C.

Appointing a volunteer to be responsible for the Information Security Management System

D.

Nothing is required

Question # 10

According to the terms and definitions associated with ISO 27001, authenticity is defined as:

A.

The property of consistency in behaviour and intended results

B.

The property that an entity is what it claims to be

C.

The ability to prove that a claimed event has occurred or that a claimed action was performed by the entities that originated it

D.

None of the above

Page: 1 / 2
Total 12 questions

Most Popular Certification Exams

Payment

       

Contact us

Site Secure

mcafee secure

TESTED 02 May 2026