Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

APMG-International ISO-IEC-27001-Foundation Exam - Topic 5 Question 15 Discussion

Which statement describes a requirement of an internal audit programme?
C) The programme must consider the importance of the target processes
A) The programme must use third party auditors to ensure impartiality
B) Previous audit results are disregarded to ensure objectivity
D) All processes must be audited within a 3-year cycle

APMG-International ISO-IEC-27001-Foundation Exam - Topic 5 Question 15 Discussion

Actual exam question for APMG-International's ISO-IEC-27001-Foundation exam
Question #: 15
Topic #: 5
[All ISO-IEC-27001-Foundation Questions]

Which statement describes a requirement of an internal audit programme?

Show Suggested Answer Hide Answer
Suggested Answer: C

Clause 9.2.2 of ISO/IEC 27001:2022 specifies requirements for the internal audit programme. It requires organizations to:

''Plan, establish, implement and maintain an audit programme(s) including the frequency, methods, responsibilities, planning requirements and reporting, which shall take into consideration the importance of the processes concerned, changes affecting the organization, and the results of previous audits.''

This makes option C correct, since importance of the processes is a required factor. Option A is incorrect because audits do not need third-party auditors; objectivity can be maintained internally if independence is respected. Option B is wrong because previous audit results must be considered, not disregarded. Option D is also incorrect --- the standard does not specify a 3-year cycle; frequency depends on risks and needs.

Thus, the correct verified answer is C.


Contribute your Thoughts:

0/2000 characters
Johnetta
23 days ago
I think option C sounds familiar because we discussed how understanding the processes is crucial for effective audits.
upvoted 0 times
...

Save Cancel