Question 1 of 30
Question: In the context of ISO/IEC 27001, an organization must understand its external and internal context. Which of the following best describes the purpose of understanding this context?
To identify and document specific products and services provided by the organization.
To establish, implement, and maintain a documented procedure for managing nonconformities and corrective actions.
To determine the issues that can affect the organization's ability to achieve the intended outcomes of its Information Security Management System (ISMS).
To ensure that all employees are aware of the security policies and their roles in maintaining information security.

Preparing for ISO/IEC 27001 Foundation Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free