exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 271 discussion

Actual exam question from Isaca's CISM
Question #: 271
Topic #: 1
[All CISM Questions]

For an organization that is experiencing outages due to malicious code, which of the following is the BEST index of the effectiveness of countermeasures?

  • A. Number of virus infections detected
  • B. Average recovery time per incident
  • C. Amount of infection-related downtime
  • D. Number of downtime-related help desk calls
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CertShooter
Highly Voted 1 year, 8 months ago
C says nothing about the effectiveness. Therefore B is considered the right answer.
upvoted 7 times
realmjmj
1 week ago
shorter recovery time per incident doesn't mean the total incident quantity also decreased. hency it may bring a longer amount of downtime overall.
upvoted 1 times
...
...
dark_3k03r
Highly Voted 1 year, 1 month ago
Selected Answer: C
The correct answer is (C.) Amount of infection-related downtime as countermeasures are meant to reduce the downtime related to infection-related incidents. It's in the answer "infection-related" and the keywords "malicious code" and "outage". Rationale: (A.) Number of virus infections detected does not measure outages so this can't be the correct answer. (B.) Average recovery time per incident is incorrect it is not as specific as C. It also measures time and not a number of occurrences like C and every incident is different. Some take more time some take less, so this variable measurement is not good for consistent measurement. (D.) Number of downtime-related help desk calls is incorrect cause this could be for a number of reasons.
upvoted 6 times
[Removed]
12 months ago
but C doesnt measure effectiveness.
upvoted 1 times
...
...
e891cd1
Most Recent 2 months, 3 weeks ago
I said B but further analysis would be C if you being petty. (B) Average recovery time per incident speaks more of incident response than control effectiveness. (C) directly relates to the malware code infection control.
upvoted 2 times
...
oluchecpoint
5 months, 1 week ago
Selected Answer: B
B. Average recovery time per incident This metric measures how quickly the organization can recover from incidents caused by malicious code. A shorter average recovery time indicates that the countermeasures in place are effective at minimizing downtime and mitigating the impact of malicious code outbreaks. It directly assesses the organization's ability to respond to and recover from such incidents, which is a critical aspect of cybersecurity incident management.
upvoted 4 times
...
Soleandheel
7 months, 2 weeks ago
B. Average recovery time per incident makes more sense to me.
upvoted 1 times
...
oluchecpoint
10 months ago
B. Average recovery time per incident This metric measures how quickly the organization can recover from incidents caused by malicious code. A shorter average recovery time indicates that the countermeasures in place are effective at minimizing downtime and mitigating the impact of malicious code outbreaks. It directly assesses the organization's ability to respond to and recover from such incidents, which is a critical aspect of cybersecurity incident management.
upvoted 1 times
...
Hugo1717
10 months, 2 weeks ago
Selected Answer: C
The correct answer is C. Amount of infection-related downtime. Explanation: Among the options provided, the amount of infection-related downtime is the best index of the effectiveness of countermeasures for an organization experiencing outages due to malicious code. Here's why the amount of infection-related downtime is the best choice: C. Amount of infection-related downtime: This metric directly measures the impact of malicious code by evaluating the total time the organization experiences downtime due to infections. Lowering downtime directly indicates the effectiveness of countermeasures.
upvoted 4 times
...
Goseu
11 months, 2 weeks ago
Selected Answer: B
I like B
upvoted 1 times
...
richck102
1 year ago
C. Amount of infection-related downtime
upvoted 2 times
...
cangurer
1 year, 3 months ago
Selected Answer: C
I believe C is correct, when you implement something to reduce outages caused by virus, you expect less downtime.
upvoted 2 times
[Removed]
1 year, 3 months ago
Agreed: When an organization suffers from outages caused by malicious code, the goal of countermeasures is to reduce the impact of the malware and the amount of downtime caused by the infection. As a result, the amount of infection-related downtime is the best indicator of countermeasure effectiveness. This metric can be used to track the progress of countermeasures over time and identify areas that require further improvement.
upvoted 2 times
...
...
CarlPTY07
1 year, 3 months ago
Selected Answer: B
Effectiveness! is B
upvoted 1 times
...
baranikumar_v
1 year, 6 months ago
b. average time per incident should reduce over time
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago