Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 579 discussion

Actual exam question from Isaca's CISM
Question #: 579
Topic #: 1
[All CISM Questions]

Which of the following would provide the GREATEST assurance to management that information security incidents will be detected and contained in a timely manner without jeopardizing the organization’s mission?

  • A. Network security penetration testing program
  • B. Continuous vulnerability scanning solution
  • C. Security information and event management (SIEM) system
  • D. Fully operational security operations center (SOC)
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
aokisan
Highly Voted 1 year, 10 months ago
Selected Answer: D
Clealy, D.
upvoted 6 times
...
Manzer
Highly Voted 1 year, 11 months ago
Selected Answer: D
SOC is the greatest.
upvoted 6 times
...
ServerBrain
Most Recent 1 month ago
Selected Answer: D
D, as it includes A, B, C
upvoted 1 times
...
koala_lay
1 year, 1 month ago
Selected Answer: D
D. Fully operational security operations center (SOC). A fully operational security operations center (SOC) is a dedicated facility or team responsible for monitoring, detecting, analyzing, and responding to security incidents in real-time. It employs a combination of technology, processes, and skilled personnel to provide comprehensive security monitoring and incident response capabilities.
upvoted 2 times
...
oluchecpoint
1 year, 2 months ago
Selected Answer: D
D. Fully operational security operations center (SOC) A fully operational Security Operations Center (SOC) is dedicated to monitoring, detecting, analyzing, and responding to security incidents and threats in real-time. It typically combines advanced technologies, skilled personnel, and established processes to provide comprehensive security monitoring and incident response capabilities. A SOC is specifically designed to detect and contain security incidents promptly, making it the most robust choice among the options listed. Note: Security Information and Event Management (SIEM) systems (Option C) are valuable for log and event analysis but may require a SOC to effectively manage and respond to incidents detected by the SIEM.
upvoted 1 times
...
richck102
1 year, 4 months ago
D. Fully operational security operations center (SOC)
upvoted 1 times
...
wello
1 year, 5 months ago
Selected Answer: D
A security information and event management (SIEM) system (option C) is a valuable tool for aggregating and analyzing security event logs from various sources. It aids in the detection and analysis of security incidents. However, a SIEM system alone may not provide the same level of assurance as a fully operational SOC, which encompasses not only the technology but also the human expertise and response capabilities.
upvoted 1 times
...
Dravidian
1 year, 6 months ago
Selected Answer: D
It's great to have a fully functioning SIEM but if there's no one to monitor and manage it then is it the greatest assurance? My vote is for the SOC.
upvoted 4 times
karanvp
1 year, 4 months ago
But still SIEM can be enabled without SOC
upvoted 1 times
Bit4c
1 year, 3 months ago
Agreed - the question says “Detected and Contained” - SIEM can’t contain by itself, unless paired with complicated solutions such as SOAR etc
upvoted 3 times
...
...
...
meelaan
1 year, 7 months ago
Selected Answer: D
Its D only
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...