ITPEC IP October 2023 Question 78

Source exam: ITPEC IP October 2023Topic: Security

ITPEC IP October 2023 — Question 78 of 100

The ISO/IEC 27000 series standardizes information security management systems and related guidance. ISO/IEC 27001 specifies requirements for establishing, implementing, maintaining, and continually improving an ISMS using risk-based controls. Other standards in the family provide terminology, implementation guidance, control guidance, and specialized security practices.

Answer (b)

Why not others:
- (a) Content management manages creation, storage, publishing, and governance of content

- (c) Talent management supports workforce capability and development

- (d) Knowledge management captures and shares organizational knowledge

Key rule: Associate ISO/IEC 27000 with information security management and ISO/IEC 27001 with certifiable ISMS requirements.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.