Which option below about the ISMS scope is correct?
A.
ISMS scope should be available as documented information
B.
ISMS scope should ensure continual improvement
C.
ISMS scope should be compatible with the strategic orientation of the organization
The Answer Is:
A
This question includes an explanation.
Explanation:
According to ISO/IEC 27001, the scope of an ISMS must be defined and documented. This documentation should include the boundaries and applicability of the information security management system, which helps in defining what information, locations, and assets are covered under the ISMS.
[References: ISO/IEC 27001:2013 Standard, Clause 4.3 (Determining the scope of the information security management system), , , , ]
ISO-IEC-27001-Lead-Auditor PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"