ExamGecko
Question list
Search
Search

Question 368 - CISM discussion

Report
Export

Which of the following BEST supports effective communication during information security incidents7

A.
Frequent incident response training sessions
Answers
A.
Frequent incident response training sessions
B.
Centralized control monitoring capabilities
Answers
B.
Centralized control monitoring capabilities
C.
Responsibilities defined within role descriptions
Answers
C.
Responsibilities defined within role descriptions
D.
Predetermined service level agreements (SLAs)
Answers
D.
Predetermined service level agreements (SLAs)
Suggested answer: D

Explanation:

The best way to support effective communication during information security incidents is to have predetermined service level agreements (SLAs) because they define the expectations and responsibilities of the parties involved in the incident response process, and specify the communication channels, methods, and frequency for reporting and updating on the incident status and resolution. Frequent incident response training sessions are not very effective because they do not address the communication needs or challenges during an actual incident. Centralized control monitoring capabilities are not very effective because they do not address the communication needs or challenges during an actual incident. Responsibilities defined within role descriptions are not very effective because they do not address the communication needs or challenges during an actual incident.

Reference: https://www.isaca.org/resources/isaca-journal/issues/2017/volume-5/incident-response-lessons-learned https://www.isaca.org/resources/isaca-journal/issues/2018/volume-3/incident-response-lessons-learned

asked 01/10/2024
Arash Rind
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first