← All ISO 20000 Certification Flashcard Decks

IT Service Management Flashcards

7 cards from real ISO 20000 Certification practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 IT Service Management flashcards as text
  1. In ISO 20000, which process is specifically responsible for controlling the financial aspects of IT service delivery, including budgeting and charging?

    Answer: Service Financial Management

    Service Financial Management covers budgeting, accounting, and charging for IT services within the ISO 20000 framework.

  2. When an organization integrates ISO 20000 with ISO 27001, which area of the SMS is most directly strengthened?

    Answer: Service continuity and information security controls

    Integrating ISO 27001 with ISO 20000 directly strengthens information security controls within the SMS, particularly service continuity planning.

  3. Under ISO 20000, which type of audit is conducted by the certification body to verify initial compliance?

    Answer: Stage 2 certification audit

    The Stage 2 audit is the full on-site certification audit conducted by the external certification body to verify conformance with ISO 20000-1.

  4. A service provider must prioritize and route incoming contacts from users. Under ISO 20000, this is the primary function of:

    Answer: The Service Desk

    The Service Desk is the single point of contact for users and is responsible for logging, prioritizing, and routing incidents and requests.

  5. Which of the following is NOT a required output of Incident Management under ISO 20000?

    Answer: Root cause analysis report for all incidents

    Root cause analysis is the responsibility of Problem Management, not Incident Management, which focuses on restoring service quickly.

  6. ISO 20000-1:2018 requires that competence of personnel performing roles in the SMS be ensured. Which clause covers this requirement?

    Answer: Clause 7 – Support

    Clause 7.2 (Competence) requires organizations to determine necessary competencies, ensure personnel are competent, and retain documented evidence.

  7. An organization's SMS scope covers only its help desk operations. During a surveillance audit, the auditor finds that the network team — excluded from scope — is causing SLA breaches. What should the organization do?

    Answer: Expand the SMS scope to include the network team or implement supplier/dependency controls

    When out-of-scope teams materially affect SMS performance, the organization must expand the scope or apply formal controls over that dependency.