Exam ISO-IEC-27001-Lead-Implementer Topic 3 Question 17 Discussion

Actual exam question for PECB's ISO-IEC-27001-Lead-Implementer exam
Question #: 17
Topic #: 3
An organization has compared its actual performance against predetermined performance targets. What is the primary purpose of this action?

Suggested Answer: B Vote an answer

The primary purpose of comparing actual performance against targets is to assess whether security objectives are being met. This is a direct requirement of ISO/IEC 27001:2022, Clause 9.1, which mandates monitoring, measurement, analysis, and evaluation to determine if objectives are achieved and to support continual improvement.
"The organization shall evaluate the performance and the effectiveness of the information security management system... and compare results with the objectives set."
- ISO/IEC 27001:2022, Clause 9.1

by Bertram at Mar 13, 2026, 03:29 AM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

0
0
0
10