exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 96 discussion

Actual exam question from Isaca's CISM
Question #: 96
Topic #: 1
[All CISM Questions]

An information security manager has identified a major security event with potential noncompliance implications. Who should be notified FIRST?

  • A. Internal audit
  • B. Public relations team
  • C. Senior management
  • D. Regulatory authorities
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
MSKid
Highly Voted 1 year, 10 months ago
Selected Answer: C
CISM AIO 2nd - Incident Management Operations > Initiation - This section covers the answer based on the severity of the incident and the incident being declared. Open to any correction
upvoted 5 times
sphenixfire
1 year ago
This is the phase in which response to the incident begins. Typically, it includes decla- ration of an incident, followed by notifications sent to response team members so that response operations may begin. Depending upon the severity of the incident, notifica- tions may be sent to business executives
upvoted 1 times
...
Ziggybooboo
1 year, 10 months ago
Senior Management looks good to me
upvoted 3 times
...
...
usercism007
Most Recent 3 months, 3 weeks ago
Selected Answer: C The question talks about a "Major" security event. If the "Senior Management" option was missing then "Data owner".
upvoted 1 times
...
Viperhunter
9 months, 4 weeks ago
Selected Answer: C
Notifying senior management promptly allows them to be aware of the situation, assess the potential impact on the organization, and make informed decisions regarding the next steps, including whether to involve internal audit, regulatory authorities, or public relations. Senior management is responsible for overseeing the organization's overall governance, risk management, and compliance, and their involvement is crucial in addressing and managing security incidents.
upvoted 1 times
...
richck102
1 year, 3 months ago
C. Senior management
upvoted 1 times
...
Antonivs
1 year, 7 months ago
Selected Answer: C
C, in case of regulations such as GDPR, authorities must be informed so D is important
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago