Within the ISMS, ensuring the integration of information security management system requirements into the organization's processes is a responsibility of:
ISO/IEC 27001:2022 assigns leadership and accountability for the ISMS to top management. One of the specific responsibilities of top management is to ensure that the ISMS requirements are integrated into the organization's processes. This demonstrates that information security is not treated as an isolated activity, but as part of the overall governance and operation of the organization. Therefore, option D is correct.
=======
Currently there are no comments in this discussion, be the first to comment!