ISO 27001 Practice Question: Who performs the certification audit? | CyberCertPrep
ISOISO 27001Certification and Audit ProcessEASYFree question
Who performs the certification audit?
A.The organization's IT department
B.An accredited third-party certification body
C.A government agency
D.The organization's internal audit team. Clause 10.1 treats this as a nonconformity finding during the corrective action process rather than as routine ISMS operation.
Why B is correct
Certification audits are conducted by independent, accredited third-party certification bodies (also called registrars).
Know someone studying for ISO 27001? Send them this one.
CyberCertPrep gives you 20 free ISO 27001 questions per day with this same answer-and-explanation depth, plus timed exam simulations and progress tracking. No card required.
ISO 27001 and ISO are trademarks or registered trademarks of their respective owners. CyberCertPrep is an independent exam-preparation resource and is not affiliated with, authorized by, sponsored by, or endorsed by ISO or any other certification body. All study material is independently created; the certification name is used only to identify the exam this resource helps you prepare for.
What must an organization do when nonconformities are found during an audit?