What is the purpose of management review in ISO/IEC 27001:2022?
ISO/IEC 27001:2022 requires top management to review the organization's ISMS at planned intervals to ensure its continuing suitability, adequacy, and effectiveness. Management review is a formal requirement under performance evaluation and is intended to confirm that the ISMS continues to support the organization's objectives and strategic direction. It is broader than policy review alone and is not limited to communication or Annex A coverage. Therefore, option C is correct.
=======
Caprice
16 hours agoAsuncion
6 days agoRaylene
11 days agoGlen
16 days agoKirk
21 days agoDenny
26 days agoSue
1 month agoKiera
1 month agoJulie
1 month agoHildegarde
2 months agoEmmanuel
2 months agoAvery
2 months agoLillian
2 months agoCassandra
2 months agoLinn
2 months ago