Information Security Risk Assessment Process

5 minutes 5 Questions

In ISO/IEC 27001, the information security risk assessment process is defined mainly in Clause 6.1.2 (Planning) and carried out under Clause 8.2 (Operation). It is the foundation of the ISMS because it determines which controls are needed and why. The organization must define and apply a process th…

Test mode:
More Information Security Risk Assessment Process questions
17 questions (total)