ExamGecko
Question list
Search
Search

Question 275 - CISM discussion

Report
Export

Which of the following is MOST important for an information security manager to verify before conducting full-functional continuity testing?

A.
Risk acceptance by the business has been documented
Answers
A.
Risk acceptance by the business has been documented
B.
Teams and individuals responsible for recovery have been identified
Answers
B.
Teams and individuals responsible for recovery have been identified
C.
Copies of recovery and incident response plans are kept offsite
Answers
C.
Copies of recovery and incident response plans are kept offsite
D.
Incident response and recovery plans are documented in simple language
Answers
D.
Incident response and recovery plans are documented in simple language
Suggested answer: B

Explanation:

Before conducting full-functional continuity testing, an information security manager should verify that teams and individuals responsible for recovery have been identified and trained on their roles and responsibilities. This will ensure that the testing can be executed effectively and efficiently, as well as identify any gaps or issues in the recovery process. Risk acceptance by the business, copies of plans kept offsite and plans documented in simple language are all good practices for continuity management, but they are not as important as having clear roles and responsibilities defined before testing.

asked 01/10/2024
Charles Brono
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first