New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Exin ISMP Exam - Topic 1 Question 8 Discussion

Actual exam question for Exin's ISMP exam
Question #: 8
Topic #: 1
[All ISMP Questions]

The information security manager is writing the Information Security Management System (ISMS) documentation. The controls that are to be implemented must be described in one of the phases of the Plan-Do-

Check-Act (PDCA) cycle of the ISMS.

In which phase should these controls be described?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Maryln
4 months ago
Seems obvious, but I had my doubts at first!
upvoted 0 times
...
Lemuel
4 months ago
Plan phase makes the most sense, for sure.
upvoted 0 times
...
Willard
5 months ago
Wait, are we sure it's not in the Do phase?
upvoted 0 times
...
Erick
5 months ago
I agree, that's where you set the controls.
upvoted 0 times
...
Francine
5 months ago
Definitely in the Plan phase!
upvoted 0 times
...
Shaquana
5 months ago
I could be wrong, but I feel like the Check phase is more about evaluating the controls after they've been implemented, not describing them.
upvoted 0 times
...
Mayra
5 months ago
I remember practicing a question like this, and I think it was about planning the controls in the Plan phase. It makes sense to document them there.
upvoted 0 times
...
Jeannine
5 months ago
I'm not entirely sure, but I feel like it might be in the Do phase since that's when we actually implement the controls.
upvoted 0 times
...
Augustine
5 months ago
I think the controls should be described in the Plan phase, right? That's where we set everything up.
upvoted 0 times
...
Yuriko
5 months ago
This seems like a tricky one. I'll need to think carefully about the GRUB menu options and how they relate to the installation process.
upvoted 0 times
...
Helaine
5 months ago
This seems like a straightforward question about IT risk management. I think the key is to identify who has the right expertise and authority to select the appropriate KRIs for implementation.
upvoted 0 times
...
Georgene
5 months ago
Remember the practice question we did on dial peers? I feel like configuring codec transparency might be the best option here.
upvoted 0 times
...
Timothy
5 months ago
Ah, I remember learning about the Civil Rights Act of 1991 in my law class. That's the one that made some important technical changes to the 1964 Act, so I'm pretty sure that's the right answer here. I'll double-check the details, but I feel good about going with option B.
upvoted 0 times
...

Save Cancel