What does ISO/IEC 27001:2022 require for the control of documented information?
A.
A person designated by top management with expertise to control documented information
B.
Acquisition of a set of information security tools for effective documented information control
C.
A consultancy to accurately perform documented information control
D.
Appropriate protection, for example, against loss of confidentiality, improper use, or loss of integrity
The Answer Is:
D
This question includes an explanation.
Explanation:
ISO/IEC 27001:2022 requires documented information to be controlled so that it is adequately protected. The standard specifically refers to protection from issues such as loss of confidentiality, improper use, and loss of integrity. It also requires documented information to be available and suitable for use where and when needed. The standard does not require a consultancy, specific tools, or a single designated expert to meet this requirement. Therefore, option D is correct.
I27001F PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"