Month End Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmasmnth

As the ISMS audit team leader, you are conducting a second-party audit of an international...

As the ISMS audit team leader, you are conducting a second-party audit of an international logistics organisation on behalf of an online retailer. During the audit, one of your team members reports a nonconformity relating to control 5.18 (Access rights) of Annex A of ISO/IEC 27001:2022. The control was justified in the Statement of Applicability. She found evidence that removing the server access protocols of 20 people who left in the last 3 months took up to 1 week whereas the policy required removing access within 24 hours of their departure.

Select the three most appropriate actions taken by the auditee to deal with this situation.

A.

Extend the required removal period from 24 hours to 7 days

B.

Change the process to ensure that leaver access protocols are removed before personnel leaves the premises

C.

Employee more IT personnel to ensure that the specified timescale can be met.

D.

Ensure that removing the server access protocols of leavers from senior management positions is prioritised

E.

Investigate whether the delays in removing access protocols caused any security breaches

F.

Monitor the ongoing process of removing leaver access protocols to determine whether it meets requirements

G.

Reprimand the IT team for failing to remove the access protocols in the required timescale

PECB ISO-IEC-27001-Lead-Auditor Summary

  • Vendor: PECB
  • Product: ISO-IEC-27001-Lead-Auditor
  • Update on: Feb 1, 2026
  • Questions: 418
Price: $52.5  $149.99
Buy Now ISO-IEC-27001-Lead-Auditor PDF + Testing Engine Pack

Payments We Accept

Your purchase with ExamsVCE is safe and fast. Your products will be available for immediate download after your payment has been received.
The ExamsVCE website is protected by 256-bit SSL from McAfee, the leader in online security.

examsvce payment method