Weekend Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

ISO-IEC-27001-Foundation Exam Dumps - APMG-International ISO/IEC 27001 Questions and Answers

Question # 4

Which factor is required to be determined when understanding the organization and its context?

Options:

A.

Internal issues affecting the purpose of the ISMS

B.

The information security objectives relevant to the ISMS

C.

The processes that will be required to operate the ISMS

D.

The ISO/IEC 27001 clauses which apply to the management system

Buy Now
Question # 5

Which action is an organization required to take to ensure that personnel are competent to perform their assigned tasks within the ISMS?

Options:

A.

Identify products which could be used in the organization to improve ISMS performance and effectiveness

B.

Ensure all personnel are trained to ISO/IEC 27001 Foundation level

C.

Ensure that the controls for compliance with legal and contractual requirements are implemented

D.

Hold up-to-date records on training, skills, experience and qualifications

Buy Now
Question # 6

Which statement describes a purpose of monitoring, measurement, analysis and evaluation according to ISO/IEC 27001?

Options:

A.

To evaluate information security performance

B.

To ensure that employees and contractors are competent

C.

To monitor the use of information assets

D.

To track the use of outsourced processes

Buy Now
Question # 7

Who determines the number of days required for a certification audit?

Options:

A.

The management representative from the organization to be audited

B.

The external auditor from the Certification Body who will undertake the audit

C.

The lead internal auditor from the organization to be audited

D.

Both the management representative and the external auditor together

Buy Now
Question # 8

Which of the following statements about the differences between an internal audit and a certification audit is true?

An internal audit is conducted at planned intervals and a certification audit is conducted annually

An internal audit is known as a 1st party audit and a certification audit is known as a 3rd party audit

Options:

A.

Only 1 is true

B.

Only 2 is true

C.

Both 1 and 2 are true

D.

Neither 1 or 2 is true

Buy Now
Question # 9

Identify the missing word in the following sentence.

According to ISO/IEC 27000, the definition of risk [?] is a “process to comprehend the nature of risk and to determine the level of risk.”

Options:

A.

Evaluation

B.

Analysis

C.

Assessment

D.

Management

Buy Now
Question # 10

Which action is a required response to an identified residual risk?

Options:

A.

By default, it shall be controlled by information security awareness and training

B.

Top management shall delegate its treatment to risk owners

C.

It shall be reviewed by the risk owner to consider acceptance

D.

The organization shall change practices to avoid the risk occurring

Buy Now
Question # 11

Which ISMS documentation is part of the minimum scope of documented information required to be managed and controlled?

Options:

A.

Records of management decisions related to continual improvement

B.

Third party information security awareness materials

C.

The budget assigned to operate the ISMS and its related allocations

D.

A statement of correspondence between other ISO standards and the ISMS

Buy Now
Question # 12

Which activity is an operational planning and control requirement?

Options:

A.

Review the consequences of unintended changes

B.

Perform information security risk assessments at planned intervals

C.

Scheduling of second party audits

D.

Document information security objectives

Buy Now
Question # 13

Which International Standard can be used to implement an integrated management system with ISO/IEC 27001?

Options:

A.

ISO/IEC 27003

B.

ISO/IEC 27013

C.

ISO 9001

D.

None of the above

Buy Now
Exam Name: ISO/IEC 27001 (2022) Foundation Exam
Last Update: Oct 4, 2025
Questions: 50
ISO-IEC-27001-Foundation pdf

ISO-IEC-27001-Foundation PDF

$25.5  $84.99
ISO-IEC-27001-Foundation Engine

ISO-IEC-27001-Foundation Testing Engine

$28.5  $94.99
ISO-IEC-27001-Foundation PDF + Engine

ISO-IEC-27001-Foundation PDF + Testing Engine

$40.5  $134.99