Which of the following is the BEST mechanism to determine the effectiveness of the incident response process?
Which of the following is the BEST mechanism to determine the effectiveness of the incident
response process?
Which of the following is the MOST appropriate suggestion for an auditor to make?
Time constraints and expanded needs have been found by an IS auditor to be the root causes for
recent violations of corporate data definition standards in a new business intelligence project.
Which of the following is the MOST appropriate suggestion for an auditor to make?
The FIRST step in an incident response plan is to:
The FIRST step in an incident response plan is to:
Which is the MOST serious risk associated with such tools?
After installing a network, an organization installed a vulnerability assessment tool or security
scanner to identify possible weaknesses. Which is the MOST serious risk associated with such
tools?
Which of the following is the FIRST step a security manager should take in this situation?
An organization has verified that its customer information was recently exposed. Which of the
following is the FIRST step a security manager should take in this situation?
The FIRST step in managing the risk of a cyber attack is to:
The FIRST step in managing the risk of a cyber attack is to:
What is the FIRST thing the incident response manager should do?
A possible breach of an organization’s IT system is reported by the project manager. What is the
FIRST thing the incident response manager should do?
Which of the following is the MOST effective method for dealing with the spreading of a network worm that expl
Which of the following is the MOST effective method for dealing with the spreading of a
network worm that exploits vulnerability in a protocol?
The PRIMARY consideration when defining recovery time objectives (RTOs) for information assets is:
The PRIMARY consideration when defining recovery time objectives (RTOs) for information
assets is:
The PRIMARY objective of performing a postincident review is that it presents an opportunity to:
The PRIMARY objective of performing a postincident review is that it presents an opportunity to: