ISO 27001:2022 - Information Security Controls Professional (based on ISO 27002:2022) Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

A global e-commerce firm, \"AstroGoods,\" is migrating its customer database to a new Software-as-a-Service (SaaS) provider for its customer relationship management (CRM) platform. This platform will house personally identifiable information (PII) and transaction histories for millions of customers worldwide. AstroGoods is particularly concerned about maintaining the confidentiality and integrity of this data, as well as being able to reconstruct events in case of a security incident, which could have significant legal repercussions under various data protection regulations. Which ISO 27001:2022 control, as detailed in ISO 27002:2022, is most critical for establishing an auditable trail of activities within the SaaS CRM to support incident investigation and compliance?

A.8.16 Monitoring activities
A.5.23 Information security for use of cloud services
A.8.15 Access control
A.8.23 Use of cryptography

About the ISO 27001:2022 - Information Security Controls Professional (based on ISO 27002:2022) Certification

These free practice questions are designed to help you assess your readiness for the ISO 27001:2022 - Information Security Controls Professional (based on ISO 27002:2022) exam by ISO. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.