Which of the following is the MOST important reason for an IS auditor to examine the results of a post-incident review performed after a security incident?
A.
To re-analyze the incident to identify any hidden backdoors planted by the attacker
B.
To evaluate the effectiveness of the network firewall against future security breaches
C.
To compare incident response metrics with industry benchmarks
D.
To evaluate the effectiveness of continuous improvement efforts
The most important reason for the IS auditor to examine the post-incident review is to assess how effectively the organization is learning from incidents and improving its security posture.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
4dfe785
3 months, 3 weeks ago