Weekend Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sale65best

Free APMG-International ISO-IEC-27001-Foundation Practice Exam with Questions & Answers | Set: 2

Questions 11

Which benefit is NOT relevant by implementing an ISMS for an organization?

Options:
A.

Information security compliance will increase stakeholder trust in the organization

B.

Information security staff will be qualified to ISO/IEC 27001 Foundation level

C.

Information security controls are tailored to suit the organization's specific circumstances

D.

Information security risks are assessed and the probability and/or impact reduced

APMG-International ISO-IEC-27001-Foundation Premium Access
Questions 12

Which item is required to be included in an information security policy?

Options:
A.

A commitment to satisfy applicable requirements related to information security

B.

A plan for the continual improvement of the information security management system

C.

A framework enabling concerns with the information security policy to be addressed

D.

A Statement of Applicability which defines the necessary controls to be implemented

Questions 13

Which statement describes a requirement for information security objectives?

Options:
A.

They shall be consistent with the information security policy

B.

They shall all be measurable

C.

They shall be contractually transferred to third parties

D.

They shall be reviewed at least annually

Questions 14

In which clause would the requirements for internal audit be found?

Options:
A.

Planning

B.

Operation

C.

Performance Evaluation

D.

Improvement

Questions 15

Which statement is a factor that will influence the implementation of the information security management system?

Options:
A.

The ISMS will be separate from the organization's overall management structure

B.

The ISMS will encompass all controls specified within ISO/IEC 27001

C.

The ISMS will be scaled to the controls according to the needs of the organization

D.

The ISMS will be operated as an independent process within the organization