Prepare for the ISO/IEC 27001 Information Security Management (ISO 27001) certification by ISO with free exam-style practice questions on CyberCertPrep. The ISO 27001 exam has 80 questions, a time limit of ISO 27001 hours, and a passing score of 70%.
Choose from Practice mode, Exam Simulation, Weak Areas review, and Daily Challenge. Track your progress with detailed analytics and study with flashcards.
ISO/IEC 27001 Information Security Management (ISO 27001) Exam Domain
Focus your study on this domain with targeted practice questions. This domain accounts for 5% of your ISO 27001 exam score.
The Certification and Audit Process domain is one of 20 exam domains on the ISO/IEC 27001 Information Security Management (ISO 27001) certification exam by ISO. At 5% of the total exam, this domain is important but should be balanced with higher-weighted domains in your study plan.
The ISO 27001 exam consists of 80 questions with a time limit of 2 hours and a passing score of 70%. That means approximately 4 questions on your exam will come from the Certification and Audit Process domain.
Access Control List (ACL)
A list of permissions attached to an object that specifies which users or system processes are granted access to resourc...
Authentication
The process of verifying the identity of a user, device, or system before granting access to resources. Authentication t...
Authorization
The process of determining what resources or actions an authenticated user is permitted to access. While authentication ...
Multi-Factor Authentication (MFA)
A security mechanism that requires two or more independent credentials to verify a user's identity, combining factors fr...
Zero Trust
A security model that requires strict identity verification for every person and device attempting to access resources, ...
Privilege Escalation
An attack where a user gains elevated access to resources that are normally protected, beyond what their assigned permis...
Least Privilege
The principle of giving users, processes, and systems only the minimum levels of access needed to perform their job func...
Role-Based Access Control (RBAC)
An approach to restricting system access to authorized users based on their role within an organization rather than indi...
These certifications also cover topics related to Certification and Audit Process: