Question 1 of 30
CyberNexus Solutions, an IT services provider, is undergoing the transition from ISO 27001:2013 to ISO 27001:2022. As the lead internal auditor, Anya Petrova is tasked with ensuring the alignment of the organization\'s information security objectives with the updated standard. CyberNexus currently has objectives focused on reducing data breaches and improving incident response times, but Anya recognizes that the revised Annex A controls in ISO 27001:2022 introduce new areas that need to be addressed. Considering the new and modified controls, particularly those related to threat intelligence and information security for use of cloud services, what is the MOST critical step Anya should prioritize to ensure the existing information security objectives are effectively aligned with the requirements of ISO 27001:2022 during the transition?
Review and revise the existing information security objectives to ensure they adequately address the new and modified Annex A controls, specifically focusing on incorporating objectives related to proactive threat intelligence gathering, cloud service security management, and aligning these objectives with the overall risk treatment plan and organizational strategic goals.
Maintain the existing information security objectives without modification, as they already cover the fundamental principles of information security and data protection, and focus solely on mapping the new Annex A controls to the existing objectives to demonstrate compliance.
Develop a completely new set of information security objectives that are entirely independent of the existing objectives, focusing solely on the new Annex A controls, and implement these objectives in parallel with the existing objectives to avoid disruption.
Defer the alignment of information security objectives until after the organization has fully implemented all the new Annex A controls, as the objectives can only be effectively defined once the controls are fully operational and their impact can be accurately assessed.

Preparing for ISO 27032:2012 Internal Auditor? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free