Is Yefund ' s development of communication protocols acceptable?
A.
Yes, because internal communications are the primary factor influencing information security
B.
Yes, because external communications are not relevant to the ISMS
C.
No, Yefund should have determined internal and external communications
The Answer Is:
C
This question includes an explanation.
Explanation:
ISO/IEC 27001:2022 Clause 7.4 requires that organizations determine both internal and external communications relevant to the ISMS. This includes what to communicate, when, with whom, and how, to ensure stakeholders—including clients and regulators—are properly informed. Focusing only on internal communications is noncompliant.
“The organization shall determine the need for internal and external communications relevant to the information security management system, including on what to communicate, when, with whom, and how.”
— ISO/IEC 27001:2022, Clause 7.4
ISO-IEC-27001-Lead-Implementer PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 65% Discount on All Products,
Use Coupon: "ac4s65"