Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 910 discussion

Actual exam question from Isaca's CISM
Question #: 910
Topic #: 1
[All CISM Questions]

Which of the following is the BEST way to determine the effectiveness of an incident response plan?

  • A. Reviewing previous audit reports
  • B. Benchmarking the plan against best practices
  • C. Performing a penetration test
  • D. Conducting a tabletop exercise
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Booict
3 months, 3 weeks ago
My answer is D. Not sure the correct answer given us A. Option A is actually focused on adherence to policies, controls, and regulatory requirements, but they don’t necessarily evaluate the plan’s practical execution or its alignment with business needs.
upvoted 1 times
...
1899f17
5 months, 3 weeks ago
D. Conducting a tabletop exercise
upvoted 1 times
...
richck102
1 year, 1 month ago
Selected Answer: D
D. Conducting a tabletop exercise
upvoted 2 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: D
D. Conducting a tabletop exercise Conducting a tabletop exercise is generally considered the best way to determine the effectiveness of an incident response plan. Tabletop exercises simulate real-world incidents in a controlled environment, allowing organizations to assess how well their incident response plan works in practice. During a tabletop exercise, participants can identify weaknesses in the plan, test the communication and coordination among team members, and identify areas for improvement. This hands-on approach provides valuable insights and helps organizations refine their incident response plan to ensure it is effective when a real incident occurs.
upvoted 1 times
...
AaronS1990
1 year, 3 months ago
Selected Answer: D
Agreed, this must be D
upvoted 1 times
...
Ewunia
1 year, 3 months ago
Selected Answer: D
for me D
upvoted 1 times
...
Aleksandra1987
1 year, 3 months ago
D for sure
upvoted 1 times
...
paul1394
1 year, 3 months ago
Selected Answer: D
A tabletop exercise is a simulation of a security incident that allows the organization to test its incident response plan and evaluate its effectiveness. During the exercise, the incident response team and other relevant stakeholders can work through a hypothetical scenario to identify any weaknesses or gaps in the plan and make improvements as needed. This can help to ensure that the organization is prepared to respond effectively to a real security incident.
upvoted 4 times
CISSPST
1 year, 2 months ago
Well explained. It's gotto be D.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...