Annex A Controls and Their Themes

5 minutes 5 Questions

Annex A of ISO/IEC 27001:2022 is a normative reference list of information security controls. Organizations use it during risk treatment under Clause 6.1.3. Annex A is not a mandatory checklist. Organizations first determine the controls they need to treat identified risks, then compare those contr…

Test mode:
More Annex A Controls and Their Themes questions
17 questions (total)