ExamGecko
Question list
Search
Search

Question 20 - CISM discussion

Report
Export

An information security manager developing an incident response plan MUST ensure it includes:

A.
an inventory of critical data.
Answers
A.
an inventory of critical data.
B.
criteria for escalation.
Answers
B.
criteria for escalation.
C.
a business impact analysis (BIA).
Answers
C.
a business impact analysis (BIA).
D.
critical infrastructure diagrams.
Answers
D.
critical infrastructure diagrams.
Suggested answer: B

Explanation:

An incident response plan is a set of procedures and guidelines that define the roles and responsibilities of the incident response team, the steps to follow in the event of an incident, and the communication and escalation protocols to ensure timely and effective resolution of incidents. One of the essential components of an incident response plan is the criteria for escalation, which specify the conditions and thresholds that trigger the escalation of an incident to a higher level of authority or a different function within the organization. The criteria for escalation may depend on factors such as the severity, impact, duration, scope, and complexity of the incident, as well as the availability and capability of the incident response team.The criteria for escalation help to ensure that incidents are handled by the appropriate personnel, that management is kept informed and involved, and that the necessary resources and support are provided to resolve the incident.Reference= https://blog.exigence.io/a-practical-approach-to-incident-management-escalation https://www.uc.edu/content/dam/uc/infosec/docs/Guidelines/Information_Security_Incident_Response_Escalation_Guideline.pdf

asked 01/10/2024
Novka Mandic
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first