ExamGecko
Question list
Search
Search

Question 489 - CISM discussion

Report
Export

An organization's information security manager reads on social media that a recently purchased vendor product has been compromised and customer data has been posted online. What should the information security manager do FIRST?

A.
Perform a business impact analysis (BIA).
Answers
A.
Perform a business impact analysis (BIA).
B.
Notify local law enforcement agencies of a breach.
Answers
B.
Notify local law enforcement agencies of a breach.
C.
Activate the incident response program.
Answers
C.
Activate the incident response program.
D.
Validate the risk to the organization.
Answers
D.
Validate the risk to the organization.
Suggested answer: D

Explanation:

The first thing that the information security manager should do after reading about a vendor product compromise on social media is to validate the risk to the organization. This means verifying the source and credibility of the information, determining if the organization uses the affected product, and assessing the potential impact and likelihood of the compromise on the organization's data and systems. Validating the risk to the organization will help the information security manager to decide on the appropriate course of action, such as activating the incident response program, notifying relevant stakeholders, or performing a BIA.

asked 01/10/2024
Elliott Leighton-Woodruff
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first