Exam ISO-IEC-27001-Lead-Implementer Topic 3 Question 17 Discussion
Actual exam question for PECB's ISO-IEC-27001-Lead-Implementer exam
Question #: 17
Topic #: 3
Question #: 17
Topic #: 3
An organization has compared its actual performance against predetermined performance targets. What is the primary purpose of this action?
Suggested Answer: B Vote an answer
The primary purpose of comparing actual performance against targets is to assess whether security objectives are being met. This is a direct requirement of ISO/IEC 27001:2022, Clause 9.1, which mandates monitoring, measurement, analysis, and evaluation to determine if objectives are achieved and to support continual improvement.
"The organization shall evaluate the performance and the effectiveness of the information security management system... and compare results with the objectives set."
- ISO/IEC 27001:2022, Clause 9.1
"The organization shall evaluate the performance and the effectiveness of the information security management system... and compare results with the objectives set."
- ISO/IEC 27001:2022, Clause 9.1
by Bertram at Mar 13, 2026, 03:29 AM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).