ISO 27001 Overview Flashcards

1
Q

Section 4.

A

Context of the Organisation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Section 5.

A

Leadership

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Section 6.

A

Planning

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Section 7.

A

Support

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Section 8.

A

Operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Section 9.

A

Performance Evaluation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Section 10.

A

Improvement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Section 4.1

A

Understanding the organisation and its context

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Section 4.2

A

Understanding the needs and expectations of interested parties

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Section 4.3

A

Determining the scope of the information security system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Section 4.4

A

Information Security Management System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Section 5.1

A

Leadership and Commitment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Section 5.2

A

Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Section 5.3

A

Organisational roles, responsibilities and authorities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Section 6.1

A

Actions to address risks and opportunities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Section 6.1.1

A

General

17
Q

Section 6.1.2

A

Information Security Risk Assessment

18
Q

Section 6.1.3

A

Information Security Risk Treatment

19
Q

Section 6.2

A

Information Security objectives and planning to achieve them

20
Q

Section 7.1

A

Resources

21
Q

Section 7.2

A

Competence

22
Q

Section 7.3

A

Awareness

23
Q

Section 7.4

A

Communication

24
Q

Section 7.5

A

Documentation

25
Q

Section 7.5.1

A

General

26
Q

Section 7.5.2

A

Creating and updating

27
Q

Section 7.5.3

A

Control of documented Information

28
Q

Section 8.1

A

Operational Planning and control

29
Q

Section 8.2

A

Information Security Risk Assessment

30
Q

Section 8.3

A

Information Security Risk Treatment

31
Q

Section 9.1

A

Monitoring, Measurement, Analysis and Evaluation

32
Q

Section 9.2

A

Internal Audit

33
Q

Section 9.3

A

Management review

34
Q

Section 10.1

A

Nonconformity and corrective action

35
Q

Section 10.2

A

Continual Improvement