Question 91

Select two of the following options that are the responsibility of a legal technical expert on the audit team during a certification audit.
  • Question 92

    An organization does not check the source code of the updated version of an application when it is updated automatically. Thus, the application may be open to unauthorized modifications. This represents a _________________ that may impact information
    ___________________
  • Question 93

    Which two of the following phrases are 'objectives' in relation to a first-party audit?
  • Question 94

    You are an ISMS audit team leader assigned by your certification body to carry out a follow-up audit of a Data Centre client.
    According to ISO 19011:2018, the purpose of a follow-up audit is to verify which one of the following?
  • Question 95

    Based on the identified nonconformities. Company A established action plans that included the detected nonconformities, the root causes, and a general statement regarding each action that would be taken. Is this acceptable?