ITPEC IP April 2026 Question 78

Source exam: ITPEC IP April 2026Topic: Security

ITPEC IP April 2026 — Question 78 of 100

Information security management system — ISO and IEC standardize ISMS requirements in the ISO/IEC 27000 family.

In particular, ISO/IEC 27001 defines requirements for establishing, operating, monitoring, and continually improving risk-based information security management.

Answer (b)

Why not others: (a) content management, (c) talent management, and (d) knowledge management are general system categories in this question, not the intended ISO security-management standard.

Key rule: Associate ISMS with ISO/IEC 27001, quality management with ISO 9001, and environmental management with ISO 14001.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.