An organization's information security manager reads on social media that a recently purchased vendor product has been compromised and customer data has been posted online. What should the information security manager do FIRST?
A.
Activate the incident response program
B.
Validate the risk to the organization
C.
Perform a business impact analysis (BIA)
D.
Notify local law enforcement agencies of a breach
A. The first thing you should always do when you think there is an incident is to fire up incident response.
The word "program" for answer A is a bit confusing but I think this is the best answer. You will validate whether it's accurate during the incident response process. two cents.
I beg to differ. You cannot just respond to an incident whose information you just read online.
Verify first, then respond accordingly.
upvoted 5 times
...
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
ServerBrain
1 month agovickyguna78
3 months, 2 weeks ago[Removed]
1 year, 4 months agorichck102
1 year, 5 months agodedfef
1 year, 7 months agoCarlLimps
1 year, 8 months agocosmo4ng
1 year, 8 months ago