ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 29 - SY0-601 discussion

Report
Export

A security researcher has alerted an organization that its sensitive user data was found for sale on a website. Which of the following should the organization use to inform the affected parties?

A.
A An incident response plan
Answers
A.
A An incident response plan
B.
A communications plan
Answers
B.
A communications plan
C.
A business continuity plan
Answers
C.
A business continuity plan
D.
A disaster recovery plan
Answers
D.
A disaster recovery plan
Suggested answer: B

Explanation:

The organization should use a communications plan to inform the affected parties. A communications plan is a document that outlines how an organization will communicate with internal and external stakeholders during a crisis or incident. It should include details such as who will be responsible for communicating with different stakeholders, what channels will be used to communicate, and what messages will be communicated.

An incident response plan is a document that outlines the steps an organization will take to respond to a security incident or data breach. A business continuity plan is a document that outlines how an organization will continue to operate during and after a disruption. A disaster recovery plan is a document that outlines how an organization will recover its IT infrastructure and data after a disaster.

asked 02/10/2024
Sergio Monsegur Torralba
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first