ISO-IEC-27001-Lead-Implementer Exam Question 11

Based on scenario 8. did the nonconformity report include all the necessary aspects?
  • ISO-IEC-27001-Lead-Implementer Exam Question 12

    Scenario 10: NetworkFuse develops, manufactures, and sells network hardware. The company has had an operational information security management system (ISMS) based on ISO/IEC 27001 requirements and a quality management system (QMS) based on ISO 9001 for approximately two years. Recently, it has applied for a j^ombined certification audit in order to obtain certification against ISO/IEC 27001 and ISO 9001.
    After selecting the certification body, NetworkFuse prepared the employees for the audit The company decided to not conduct a self-evaluation before the audit since, according to the top management, it was not necessary. In addition, it ensured the availability of documented information, including internal audit reports and management reviews, technologies in place, and the general operations of the ISMS and the QMS.
    However, the company requested from the certification body that the documentation could not be carried off-site However, the audit was not performed within the scheduled days because NetworkFuse rejected the audit team leader assigned and requested their replacement The company asserted that the same audit team leader issued a recommendation for certification to its main competitor, which, for the company's top management, was a potential conflict of interest. The request was not accepted by the certification body Based on the scenario above, answer the following question:
    Does NetworkFuse fulfill the prerequisites for a certification audit?
  • ISO-IEC-27001-Lead-Implementer Exam Question 13

    Based on scenario 9. did the ISMS project manager complete the corrective action process appropriately?
  • ISO-IEC-27001-Lead-Implementer Exam Question 14

    Why did InfoSec establish an IRT? Refer to scenario 7.
  • ISO-IEC-27001-Lead-Implementer Exam Question 15

    An organization has justified the exclusion of control 5.18 Access rights of ISO/IEC 27001 in the Statement of Applicability (SoA) as follows: "An access control reader is already installed at the main entrance of the building." Which statement is correct'