Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 450 discussion

Actual exam question from Isaca's CISM
Question #: 450
Topic #: 1
[All CISM Questions]

The PRIMARY objective of performing a post-incident review is to:

  • A. identify control improvements
  • B. identify vulnerabilities
  • C. re-evaluate the impact of incidents
  • D. identify the root cause
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
koala_lay
Highly Voted 1 year, 6 months ago
Selected Answer: D
The primary objective of performing a post-incident review is to identify the root cause of the incident. Answer: D
upvoted 6 times
[Removed]
1 year, 4 months ago
No. Root cause is identified during triage.
upvoted 3 times
...
...
wello
Highly Voted 1 year, 5 months ago
Selected Answer: A
the primary purpose of a post-incident review is indeed to identify control improvements and lessons learned, which may involve conducting a root cause analysis as part of the overall process. The focus is on identifying areas for improvement in controls, processes, and procedures to prevent similar incidents from occurring in the future and to enhance the organization's overall security posture.
upvoted 5 times
...
Booict
Most Recent 2 months, 2 weeks ago
Selected Answer: A
A for me. D is important too, identifying the root cause helps in understanding what went wrong, but the focus of the post-incident review is on learning from the incident and making necessary adjustments to controls and procedures to mitigate future risks.
upvoted 1 times
...
Jess20
11 months, 3 weeks ago
Selected Answer: A
A. identify improvements
upvoted 2 times
...
Ricky_Bobby
1 year, 1 month ago
Ok, hanging my mind after further research - primary objective is to A identify control improvements as that is an objective , identifying root cause helps with that
upvoted 2 times
...
Ricky_Bobby
1 year, 1 month ago
Think there is confusion on “root cause” yes root cause is done as part of eradication , however in a post incident review “root cause” refers to understanding how the incident happened in the first placee, so Option D
upvoted 1 times
...
kristofer8
1 year, 2 months ago
It is D 100% sure!!! Similar question on official QAE 10
upvoted 2 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: A
Option A
upvoted 1 times
...
Agamennore
1 year, 3 months ago
Selected Answer: A
it's A. identty root cause is part of eradicatio phase
upvoted 1 times
...
AaronS1990
1 year, 3 months ago
Selected Answer: A
This is A. You want to get better to prevent this happening again, simple as that
upvoted 2 times
...
Rowlandmarc
1 year, 3 months ago
Selected Answer: D
A is correct , NOT D During incident you identify root cause at remediation step of NIST incident management .
upvoted 1 times
...
Goseu
1 year, 4 months ago
A is correct , NOT D During incident you identify root cause at remediation step of NIST incident management .
upvoted 2 times
...
richck102
1 year, 4 months ago
A. identify control improvements
upvoted 3 times
...
Saisharan
1 year, 5 months ago
By identifying the root cause of the incident, the organization gains valuable insights into the fundamental issues that need to be addressed to prevent similar incidents in the future. It helps in determining the corrective actions and control improvements necessary to enhance the organization's security posture and resilience. So Option D
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...