ExamGecko
Question list
Search
Search

Question 109 - CISM discussion

Report
Export

Which of the following is MOST important to ensure when developing escalation procedures for an incident response plan?

A.
Each process is assigned to a responsible party.
Answers
A.
Each process is assigned to a responsible party.
B.
The contact list is regularly updated.
Answers
B.
The contact list is regularly updated.
C.
Minimum regulatory requirements are maintained.
Answers
C.
Minimum regulatory requirements are maintained.
D.
Senior management approval has been documented.
Answers
D.
Senior management approval has been documented.
Suggested answer: B

Explanation:

= The contact list is the most important element of the escalation procedures for an incident response plan, as it ensures that the appropriate stakeholders are notified and involved in the incident management process. A contact list should include the names, roles, responsibilities, phone numbers, email addresses, and backup contacts of the key personnel involved in the incident response, such as the incident response team, senior management, legal counsel, public relations, law enforcement, and external service providers.The contact list should be regularly updated and tested to ensure its accuracy and availability123.Reference=

1: Information Security Incident Response Escalation Guideline2, page 4

2: A Practical Approach to Incident Management Escalation1, section ''Step 2: Log the escalation and record the related incident problems that occurred''

3: Computer Security Incident Handling Guide4, page 18

asked 01/10/2024
Nicholas Stoner
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first