ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 267 - CAS-004 discussion

Report
Export

The Chief Information Security Officer (CISO) is working with a new company and needs a legal ''document to ensure all parties understand their roles during an assessment. Which of the following should the CISO have each party sign?

A.
SLA
Answers
A.
SLA
B.
ISA
Answers
B.
ISA
C.
Permissions and access
Answers
C.
Permissions and access
D.
Rules of engagement
Answers
D.
Rules of engagement
Suggested answer: D

Explanation:

Rules of engagement are legal documents that should be signed by all parties involved in an assessment to ensure they understand their roles and responsibilities. Rules of engagement define the scope, objectives, methods, deliverables, limitations, and expectations of an assessment project. They also specify the legal and ethical boundaries, communication channels, escalation procedures, and reporting formats for the assessment. Rules of engagement help to avoid misunderstandings, conflicts, or liabilities during or after an assessment.

asked 02/10/2024
Piotr Jakubowski
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first