According to ISO 27000, what is the primary purpose of an Information Security Management System (ISMS)?
-
A
To eliminate all security risks
-
B
To provide a systematic approach to managing sensitive information
-
C
To comply with government regulations only
-
D
To restrict employee access to systems