ITPEC IP October 2025 Question 44
ITPEC IP October 2025 — Question 44 of 100
An objective third-party evaluation is a Check activity — an independent audit measures whether ISMS work conforms to requirements and is operating effectively.
In PDCA, Check includes monitoring, measurement, internal audits, and management review. An evaluator examining the server administrator's work provides evidence about actual performance without designing or changing the controls.
Answer (c)
Why not others:
- (a) applies corrective improvement based on audit results, so it is Act
- (b) identifies assets and decides objectives and controls, so it is Plan
- (d) operates the server under an established procedure, so it is Do
Key rule: Plan defines, Do operates, Check evaluates, and Act corrects or improves based on the evaluation.
AI-generated — may contain errors
The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.
This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.