Câu 4: Transition 27001: PECB Certified ISO/IEC 27001 Transition
ISO/IEC 27001:2013 uses the term “comprehensive list of controls”, whereas ISO/IEC 27001:2022 uses the term “list of possible information security controls.”Does this change affect the requirements of the standard?
Nội dung câu hỏi
ISO/IEC 27001:2013 uses the term “comprehensive list of controls”, whereas ISO/IEC 27001:2022 uses the term “list of possible information security controls.”Does this change affect the requirements of the standard?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Yes, the new version of the standard allows organizations to decide which controls will be implemented as they are not mandatory anymore
- B. No, this change affects the requirements specified in Annex A of ISO/IEC 27001:2013 but not in main clauses of the standard
- C. No, this is a technical revision which does not affect the content of clauses or requirements of ISO/IEC 27001:2013 — đáp án hiện tại
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.