exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 64 discussion

Actual exam question from Isaca's CISM
Question #: 64
Topic #: 1
[All CISM Questions]

The effectiveness of an incident response team will be GREATEST when:

  • A. the incident response process is updated based on lessons learned.
  • B. the incident response team members are trained security personnel.
  • C. the incident response team meets on a regular basis to review log files.
  • D. incidents are identified using a security information and event monitoring (SIEM) system.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Broesweelies
Highly Voted 1 year, 1 month ago
Selected Answer: A
A. the incident response process is updated based on lessons learned. The effectiveness of an incident response team will be GREATEST when the incident response process is updated based on lessons learned. This means that the team should continuously review and update the incident response plan based on the outcomes of previous incidents and exercises, as well as new threats and vulnerabilities. This will help to ensure that the incident response process is as effective as possible, and that the team is prepared to respond to a wide range of incidents. Having trained security personnel on the incident response team, regularly reviewing log files, and using a security information and event monitoring (SIEM) system can also enhance the incident response effectiveness, but without updating the incident response process based on lessons learned, it's less likely to be efficient.
upvoted 7 times
...
Viperhunter
Most Recent 3 months, 3 weeks ago
Selected Answer: A
The effectiveness of an incident response team is greatest when the incident response process is regularly reviewed and updated based on lessons learned from previous incidents. Continuous improvement of the incident response process ensures that the team is better prepared to handle and mitigate future incidents.
upvoted 1 times
...
Viperhunter
3 months, 3 weeks ago
Selected Answer: A
Continuous improvement is crucial for enhancing the effectiveness of an incident response team. Regularly updating the incident response process based on lessons learned from previous incidents ensures that the team evolves and adapts to emerging threats and challenges. By incorporating feedback and insights from real incidents, the team becomes more proactive and better prepared to handle future incidents. While having trained security personnel (option B), regular meetings to review log files (option C), and using a security information and event monitoring (SIEM) system to identify incidents (option D) are important components of effective incident response, the ongoing refinement of the incident response process based on lessons learned is a fundamental factor in maximizing effectiveness.
upvoted 2 times
...
richck102
10 months ago
A. the incident response process is updated based on lessons learned.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago