Which one of the following is an Information Security Management Standard ?
Explanation:
The correct option is (c) ISO 27001. ISO/IEC 27001 is the internationally recognized standard for Information Security Management Systems (ISMS). It provides a framework for organizations to establish, implement, maintain, and continually improve their information security by managing risks and ensuring the confidentiality, integrity, and availability of information. Option (a) ISO 9001 is a standard for Quality Management Systems (QMS). Option (b) ISO 14001 is a standard for Environmental Management Systems (EMS). Option (d) ISO 17025 specifies general requirements for the competence of testing and calibration laboratories. Therefore, only ISO 27001 directly addresses information security management.