Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 918 discussion

Actual exam question from Isaca's CISM
Question #: 918
Topic #: 1
[All CISM Questions]

Which of the following is MOST important for responding effectively to security breaches?

  • A. Chain of custody
  • B. Incident classification
  • C. Log monitoring
  • D. Communication plan
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Booict
3 months, 3 weeks ago
B - Properly classifying incidents allows organizations to prioritize their response efforts, ensuring efficient allocation of resources and timely communication with the right stakeholders. D is also important but u need to classify the incident first before proceed to communication.
upvoted 1 times
...
TamerBeSafe
10 months ago
Selected Answer: B
Incident classification
upvoted 1 times
...
Soleandheel
11 months, 3 weeks ago
Incident classification precedes a communication plan. You cannot establish an effective communication plan without first classifying the incidents since their classification helps shape the communication plan. High priority incidents will have to communicated differently from low priority incidents.
upvoted 3 times
...
SilverFox
11 months, 4 weeks ago
Selected Answer: B
As said by others - good comms can lead to bad outcomes if the classification is wrong.
upvoted 2 times
...
Cyberbug2021
12 months ago
Selected Answer: B
Classify for appropriate response
upvoted 1 times
...
ideu
1 year ago
Selected Answer: B
Key word is "effectively". You need to clasify to respond effectively .
upvoted 2 times
...
richck102
1 year, 1 month ago
Selected Answer: D
D. Communication plan
upvoted 2 times
...
secdoc
1 year, 1 month ago
Has to be incident classification without which you would not know who to communicate what to
upvoted 1 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: D
A communication plan outlines how an organization will communicate with various stakeholders, including internal teams, external parties (such as customers, partners, and regulators), and the public, in the event of a security breach. This plan ensures that everyone is on the same page, knows their roles and responsibilities, and can respond promptly and appropriately to the breach. Effective communication can help minimize the damage caused by a breach, maintain trust with customers and partners, and meet legal and regulatory requirements. Without a clear communication plan, the response to a security breach may be disorganized, leading to confusion, delays, and potentially more significant consequences.
upvoted 1 times
CISSPST
1 year, 2 months ago
I am divided between incident classification and communication plan. For the sake of discussion, without understanding the severity of the incident and criticality of the asset at risk, how do we determine which aspect of the communication plan applies to an identified incident? Like which stakeholders to inform, what information to share etc.?
upvoted 5 times
a43
7 months, 2 weeks ago
The question is about "responding effectively to security breaches". I would say that Communication plan is the most important to achieve this.
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...