exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 332 discussion

Actual exam question from Isaca's CISM
Question #: 332
Topic #: 1
[All CISM Questions]

A modification to a critical system was not detected until the system was compromised. Which of the following will BEST help to prevent future occurrences?

  • A. Conducting continuous network monitoring
  • B. Improving the change control process
  • C. Conducting continuous risk assessments
  • D. Baselining server configurations
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dark_3k03r
Highly Voted 1 year, 3 months ago
Selected Answer: B
The Correct answer is B: Improving the change control process as that is the only one that fixes the issue. Rationale: (A) Is incorrect cause monitoring doesn't fix anything (C) Is incorrect cause monitoring doesn't fix anything (D) Baselines are great, but it doesn't capture any new changes.
upvoted 7 times
...
blehbleh
Most Recent 6 months ago
Selected Answer: B
The word modification should immediately make everyone think of change management. It's B, look for the key words in the questions.
upvoted 2 times
...
[Removed]
1 year ago
Selected Answer: B
Change control would better detect or prevent that change
upvoted 1 times
...
richck102
1 year, 1 month ago
A. Conducting continuous network monitoring
upvoted 1 times
AlexJacobson
5 months, 2 weeks ago
good luck on your exam...let's see how far chatgpt takes you...
upvoted 1 times
...
...
mad68
1 year, 1 month ago
Selected Answer: A
A. Conducting continuous network monitoring. Continuous network monitoring is an important practice for detecting and responding to security incidents promptly. By continuously monitoring the network, suspicious activities, unauthorized changes, and potential compromises can be identified in real-time or at an early stage. This enables the organization to take immediate action to mitigate the impact and prevent further compromises.
upvoted 1 times
jcisco123
6 months, 2 weeks ago
Network monitoring? How is it relevant to server change?
upvoted 1 times
ExamTopicsAdmin1
3 weeks, 3 days ago
The question mentions "system" not a server. What if the modification was on a network device?
upvoted 1 times
...
...
...
Abhey
1 year, 2 months ago
Selected Answer: B
Improving the change control process would be the BEST way to prevent future occurrences where a modification to a critical system goes undetected
upvoted 2 times
...
CarlLimps
1 year, 3 months ago
Selected Answer: D
I like D for this one - Baseline configuration - A documented set of specifications for an information system, or a configuration item within a system, that has been formally reviewed and agreed on at a given point in time, and which can be changed only through change control procedures.
upvoted 3 times
...
Broesweelies
1 year, 5 months ago
Selected Answer: B
B. Improving the change control process will best help to prevent future occurrences of undetected modifications to critical systems. A robust change control process is essential for ensuring that modifications to critical systems are tracked, approved, and tested before they are implemented. This helps to ensure that any potential vulnerabilities or other issues are identified and addressed before they can be exploited by attackers.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago