ExamGecko
Question list
Search
Search

Question 646 - CISM discussion

Report
Export

The categorization of incidents is MOST important for evaluating which of the following?

A.
Appropriate communication channels
Answers
A.
Appropriate communication channels
B.
Allocation of needed resources
Answers
B.
Allocation of needed resources
C.
Risk severity and incident priority
Answers
C.
Risk severity and incident priority
D.
Response and containment requirements
Answers
D.
Response and containment requirements
Suggested answer: C

Explanation:

The categorization of incidents is most important for evaluating the risk severity and incident priority, as these factors determine the impact and urgency of the incident, and the appropriate level of response and escalation. The categorization of incidents helps to classify the incidents based on their type, source, cause, scope, and affected assets or services. By categorizing incidents, the information security manager can assess the potential or actual harm to the organization, its stakeholders, and its objectives, and assign a priority level that reflects the need for immediate action and resolution. The risk severity and incident priority also influence the allocation of resources, the response and containment requirements, and the communication channels, but they are not the primary purpose of categorization.

Reference= CISM Review Manual, 27th Edition, Chapter 4, Section 4.4.1, page 2371; CISM Online Review Course, Module 4, Lesson 4, Topic 12; CIRT Case Classification (Draft) - FIRST3

asked 01/10/2024
sarath raj
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first