ISO 27001 Overview Flashcards

(35 cards)

1
Q

Section 4.

A

Context of the Organisation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Section 5.

A

Leadership

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Section 6.

A

Planning

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Section 7.

A

Support

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Section 8.

A

Operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Section 9.

A

Performance Evaluation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Section 10.

A

Improvement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Section 4.1

A

Understanding the organisation and its context

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Section 4.2

A

Understanding the needs and expectations of interested parties

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Section 4.3

A

Determining the scope of the information security system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Section 4.4

A

Information Security Management System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Section 5.1

A

Leadership and Commitment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Section 5.2

A

Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Section 5.3

A

Organisational roles, responsibilities and authorities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Section 6.1

A

Actions to address risks and opportunities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Section 6.1.1

17
Q

Section 6.1.2

A

Information Security Risk Assessment

18
Q

Section 6.1.3

A

Information Security Risk Treatment

19
Q

Section 6.2

A

Information Security objectives and planning to achieve them

20
Q

Section 7.1

21
Q

Section 7.2

22
Q

Section 7.3

23
Q

Section 7.4

A

Communication

24
Q

Section 7.5

A

Documentation

25
Section 7.5.1
General
26
Section 7.5.2
Creating and updating
27
Section 7.5.3
Control of documented Information
28
Section 8.1
Operational Planning and control
29
Section 8.2
Information Security Risk Assessment
30
Section 8.3
Information Security Risk Treatment
31
Section 9.1
Monitoring, Measurement, Analysis and Evaluation
32
Section 9.2
Internal Audit
33
Section 9.3
Management review
34
Section 10.1
Nonconformity and corrective action
35
Section 10.2
Continual Improvement