Exam ISO-IEC-27001-Lead-Implementer Topic 5 Question 128 Discussion

Actual exam question for PECB's ISO-IEC-27001-Lead-Implementer exam
Question #: 128
Topic #: 5
What is the primary purpose of risk analysis?

Suggested Answer: A Vote an answer

Risk analysis is conducted to understand the nature of risk and determine its level, which is essential for making informed risk treatment decisions. This process is outlined in ISO/IEC 27001:2022, Clause 6.1.2 and further detailed in ISO/IEC 27005:2022.
"The aim of risk analysis is to comprehend the nature of risk and determine its level."
- ISO/IEC 27001:2022, Clause 6.1.2; ISO/IEC 27005:2022, 8.3

by Yedda at Feb 23, 2026, 02:04 AM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

0
0
0
10