ExamGecko
Question list
Search
Search

Question 241 - CISM discussion

Report
Export

The PRIMARY objective of performing a post-incident review is to:

A.
re-evaluate the impact of incidents
Answers
A.
re-evaluate the impact of incidents
B.
identify vulnerabilities
Answers
B.
identify vulnerabilities
C.
identify control improvements.
Answers
C.
identify control improvements.
D.
identify the root cause.
Answers
D.
identify the root cause.
Suggested answer: D

Explanation:

= The PRIMARY objective of performing a post-incident review is to identify the root cause of the incident, which is the underlying factor or condition that enabled the incident to occur. Identifying the root cause helps to prevent or mitigate future incidents, as well as to improve the incident response process.Re-evaluating the impact of incidents, identifying vulnerabilities, and identifying control improvements are secondary objectives of a post-incident review, which are derived from the root cause analysis.Reference= CISM Review Manual, 16th Edition, page 3061; CISM Review Questions, Answers & Explanations Manual, 10th Edition, page 1512

The primary objective of performing a post-incident review is to identify the root cause of the incident. After an incident has occurred, the post-incident review process involves gathering and analyzing evidence to determine the cause of the incident. This analysis will help to identify both the underlying vulnerability that allowed the incident to occur, as well as any control improvements that should be implemented to prevent similar incidents from occurring in the future. Additionally, the post-incident review process can also be used to re-evaluate the impact of the incident, as well as any potential implications for the organization.

asked 01/10/2024
Vijay Kumar
47 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first