Question 1 of 30
Assessment of top management\'s commitment to information security within an organization seeking ISO 27001 certification, what is the most effective approach for an auditor to gather objective evidence of this commitment?
Reviewing meeting minutes from the steering committee where information security is a regular agenda item, examining evidence of resource allocation for security initiatives, and assessing leadership communications regarding security objectives.
Accepting the presence of a formally documented information security policy as sufficient proof of leadership's commitment.
Relying solely on interviews with IT security personnel to gauge the perceived level of support from senior management.
Evaluating the number of security awareness training sessions conducted by the organization, assuming this directly reflects leadership's commitment.

Preparing for ISO 27001 Lead Auditor? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free