PracticeTestGeeks home

ISO 27000 Foundation Certification FREE ISO 27000 Foundation Controls & Compliance Questions and Answers

An organization is conducting an internal audit of its ISMS.
The auditor discovers that the incident response plan, while documented, has not been tested in the past year, despite a policy requiring annual testing.

Which aspect of ISO 27001's Clause 9 (Performance Evaluation) is primarily being addressed by this finding?

Select your answer