Preventive, Detective and Corrective Controls

5 minutes 5 Questions

In ISO/IEC 27001, controls are measures that modify information security risk. They are commonly classified by function as preventive, detective or corrective. ISO/IEC 27002:2022 formalises this through its control type attribute, which helps organisations build layered, defence-in-depth protection…

Test mode:
More Preventive, Detective and Corrective Controls questions
28 questions (total)