ExamGecko
Question list
Search
Search

Related questions

Question 1008 - CISA discussion

Report
Export

An IS auditor reviewing incident response management processes notices that resolution times for reoccurring incidents have not shown improvement. Which of the following is the auditor's BEST recommendation?

A.
Harden IT system and application components based on best practices.
Answers
A.
Harden IT system and application components based on best practices.
B.
Incorporate a security information and event management (SIEM) system into incident response
Answers
B.
Incorporate a security information and event management (SIEM) system into incident response
C.
Implement a survey to determine future incident response training needs.
Answers
C.
Implement a survey to determine future incident response training needs.
D.
Introduce problem management into incident response.
Answers
D.
Introduce problem management into incident response.
Suggested answer: D

Explanation:

The auditor's best recommendation is D. Introduce problem management into incident response.Problem management is a practice that aims to identify, analyze, and resolve the root causes of recurring incidents, and prevent or reduce their impact in the future1.Problem management can help improve the resolution times for recurring incidents by eliminating or mitigating the underlying problems that cause them, and by providing permanent solutions that can be reused or automated2.Problem management can also help improve the quality and efficiency of incident response by reducing the workload and complexity of dealing with repetitive issues2.

asked 18/09/2024
Nicolas GARCIA
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first