After the occurrence of a major information security incident, which of the following will BEST help an information security manager determine corrective actions?
The keyword here is corrective actions which means making improvements which will happen as part of lessons learned or post incident review/assessment, so the best answer is D
onducting a postmortem assessment (option D) is the BEST way for an information security manager to determine corrective actions after a major information security incident. It allows for a thorough evaluation of the incident, identifies underlying causes, and provides guidance for strengthening the security program and preventing future incidents.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
vickyguna78
3 months, 3 weeks agoacf4e9a
1 year, 1 month agooluchecpoint
1 year, 2 months agoAaronS1990
1 year, 3 months agoGoseu
1 year, 3 months agorichck102
1 year, 5 months agowello
1 year, 5 months ago