CREST Practitioner Security Analyst (CPSA) Practice

Disable ads (and more) with a membership for a one time $2.99 payment

Master the CREST Practitioner Security Analyst Exam. Prepare with quizzes and comprehensive study guides that include tips and explanations. Excel in your certification journey!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which of the following is a standard related to information security management?

  1. ISO 27000 Series

  2. Basel Accord

  3. FERPA

  4. HIPAA

The correct answer is: ISO 27000 Series

The ISO 27000 Series is a recognized set of international standards specifically focused on information security management. These standards provide a framework that organizations can follow to establish, implement, maintain, and continually improve their information security management systems (ISMS). The ISO 27001 standard within this series is particularly important, as it specifies the requirements for establishing and managing an effective ISMS. In contrast, the Basel Accord primarily pertains to banking regulations and risk management, particularly focusing on how banks should manage various types of financial risk. FERPA (Family Educational Rights and Privacy Act) is a U.S. federal law that protects the privacy of student education records, while HIPAA (Health Insurance Portability and Accountability Act) deals with protecting patient health information. None of these are designed specifically for managing information security as comprehensively as the ISO 27000 Series. Therefore, the ISO 27000 Series stands out as the most relevant standard relating directly to information security management.