ExamGecko
Question list
Search
Search

Question 142 - CISM discussion

Report
Export

Which of the following BEST facilitates effective incident response testing?

A.
Including all business units in testing
Answers
A.
Including all business units in testing
B.
Simulating realistic test scenarios
Answers
B.
Simulating realistic test scenarios
C.
Reviewing test results quarterly
Answers
C.
Reviewing test results quarterly
D.
Testing after major business changes
Answers
D.
Testing after major business changes
Suggested answer: B

Explanation:

Effective incident response testing is a process of verifying and validating the incident response plan, procedures, roles, and resources that are designed to respond to and recover from information security incidents. The purpose of testing is to ensure that the incident response team and the organization are prepared, capable, and confident to handle any potential or actual incidents that could affect the business continuity, reputation, and value. The best way to facilitate effective testing is to simulate realistic test scenarios that reflect the most likely or critical threats and vulnerabilities that could cause an incident, and the most relevant or significant impacts and consequences that could result from an incident. Simulating realistic test scenarios can help to evaluate the adequacy, accuracy, and applicability of the incident response plan, procedures, roles, and resources, as well as to identify and address any gaps, weaknesses, or errors that could hinder or compromise the incident response process. Simulating realistic test scenarios can also help to enhance the skills, knowledge, and experience of the incident response team and the organization, as well as to improve the communication, coordination, and collaboration among the stakeholders involved in the incident response process.Simulating realistic test scenarios can also help to measure and report the effectiveness and efficiency of the incident response process, and to provide feedback and recommendations for improvement and optimization.Reference= CISM Review Manual 15th Edition, page 2401; CISM Practice Quiz, question 1362

asked 01/10/2024
as-sordick alidou
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first