ExamGecko
Question list
Search
Search

Question 434 - CISM discussion

Report
Export

Which of the following is the MOST effective way to detect security incidents?

A.
Analyze recent security risk assessments.
Answers
A.
Analyze recent security risk assessments.
B.
Analyze security anomalies.
Answers
B.
Analyze security anomalies.
C.
Analyze penetration test results.
Answers
C.
Analyze penetration test results.
D.
Analyze vulnerability assessments.
Answers
D.
Analyze vulnerability assessments.
Suggested answer: B

Explanation:

Analyzing security anomalies is the most effective way to detect security incidents, as it involves comparing the current state of the information system and network with the expected or normal state, and identifying any deviations or irregularities that may indicate a security breach or compromise. Security anomalies can be detected by using various tools and techniques, such as security information and event management (SIEM) systems, intrusion detection and prevention systems (IDS/IPS), log analysis, network traffic analysis, and behavioral analysis. (From CISM Review Manual 15th Edition)

asked 01/10/2024
Aubrey Oliver Jr
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first