Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

PECB ISO-IEC-27001-Lead-Auditor Exam - Topic 2 Question 65 Discussion

Actual exam question for PECB's ISO-IEC-27001-Lead-Auditor exam
Question #: 65
Topic #: 2
[All ISO-IEC-27001-Lead-Auditor Questions]

Which one of the following options is the definition of the context of an organisation?

Show Suggested Answer Hide Answer
Suggested Answer: C

The context of the organisation is the business environment in which the organisation operates and defines its information security management system (ISMS). It includes the internal and external factors and conditions that can influence the organisation's information security objectives, strategies, and policies. The context of the organisation helps the organisation to identify the scope, boundaries, and requirements of the ISMS, as well as the interested parties and their expectations. The context of the organisation is determined by considering both internal and external issues, such as the organisational structure, culture, values, mission, vision, objectives, strategies, resources, capabilities, processes, activities, products, services, markets, customers, competitors, suppliers, partners, regulators, laws, regulations, standards, guidelines, best practices, risks, opportunities, threats, vulnerabilities, etc. Reference: ISO 27001:2022 Clause 4 Context of the organization, ISO 27001 Requirement 4.1 -- Understanding the Context of the Organisation, ISO 27001 context of the organization -- How to define it - Advisera


Contribute your Thoughts:

0/2000 characters
Roselle
15 days ago
Wait, are we sure about that? Seems a bit vague.
upvoted 0 times
...
Samira
20 days ago
Totally agree, C is the most comprehensive!
upvoted 0 times
...
Herman
25 days ago
Option C seems to cover both internal and external issues well.
upvoted 0 times
...
Daniel
1 month ago
Isn't it a bit vague though?
upvoted 0 times
...
Ruthann
1 month ago
I thought it was more about just internal factors.
upvoted 0 times
...
King
1 month ago
Wait, how can you really measure all those issues?
upvoted 0 times
...
Francoise
2 months ago
Totally agree with C, it captures the essence!
upvoted 0 times
...
Cordell
2 months ago
Option C seems to cover both internal and external issues well.
upvoted 0 times
...
Kerry
2 months ago
I lean towards option A because it talks about control, which seems important, but I wonder if it’s too narrow compared to the others.
upvoted 0 times
...
Samira
2 months ago
I keep mixing up the definitions. Is it about complexity or just a combination of issues? I feel like I need to review this topic again.
upvoted 0 times
...
Roxane
2 months ago
I remember a practice question that focused on how these issues affect objectives. I feel like option C might be the right choice since it mentions both developing and achieving objectives.
upvoted 0 times
...
Kaitlyn
2 months ago
I think the context of an organisation is about understanding both internal and external factors, but I'm not sure if it's more about control or coordination.
upvoted 0 times
...

Save Cancel