ExamGecko
Question list
Search
Search

Question 21 - CISM discussion

Report
Export

Which of the following BEST supports the incident management process for attacks on an organization's supply chain?

A.
Including service level agreements (SLAs) in vendor contracts
Answers
A.
Including service level agreements (SLAs) in vendor contracts
B.
Establishing communication paths with vendors
Answers
B.
Establishing communication paths with vendors
C.
Requiring security awareness training for vendor staff
Answers
C.
Requiring security awareness training for vendor staff
D.
Performing integration testing with vendor systems
Answers
D.
Performing integration testing with vendor systems
Suggested answer: A

Explanation:

The best way to support the incident management process for attacks on an organization's supply chain is to establish communication paths with vendors. This means that the organization and its vendors have clear and agreed-upon channels, methods, and protocols for exchanging information and coordinating actions in the event of an incident that affects the supply chain. Communication paths with vendors can help to identify the source, scope, and impact of the incident, as well as to share best practices, lessons learned, and recovery strategies. Communication paths with vendors can also facilitate the escalation and resolution of the incident, as well as the reporting and documentation of the incident.Communication paths with vendors are part of the incident response plan (IRP), which is a component of the information security program (ISP)12345.

The other options are not the best ways to support the incident management process for attacks on the organization's supply chain. Including service level agreements (SLAs) in vendor contracts can help to define the expectations and obligations of the parties involved in the supply chain, as well as the penalties for non-compliance. However, SLAs do not necessarily address the specific procedures and requirements for incident management, nor do they ensure effective communication and collaboration among the parties. Requiring security awareness training for vendor staff can help to reduce the likelihood and severity of incidents by enhancing the knowledge and skills of the vendor personnel who handle the organization's data and systems. However, security awareness training does not guarantee that the vendor staff will follow the appropriate incident management processes, nor does it address the communication and coordination issues that may arise during an incident. Performing integration testing with vendor systems can help to ensure the compatibility and functionality of the systems that are part of the supply chain, as well as to identify and mitigate any vulnerabilities or errors that could lead to incidents.However, integration testing does not cover all the possible scenarios and risks that could affect the supply chain, nor does it provide the necessary communication and response mechanisms for incident management.Reference=1,2,3,4,5

https://niccs.cisa.gov/education-training/catalog/skillsoft/cism-information-security-incident-management-part-1 https://niccs.cisa.gov/education-training/catalog/skillsoft/cism-information-security-incident-management-part-1

asked 01/10/2024
Matthew Montgomery
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first