exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 631 discussion

Actual exam question from Isaca's CISM
Question #: 631
Topic #: 1
[All CISM Questions]

Which of the following is the MOST important reason to document information security incidents that are reported across the organization?

  • A. Support business investments in security.
  • B. Evaluate the security posture of the organization.
  • C. Identify unmitigated risk.
  • D. Prevent incident recurrence.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
03allen
1 year ago
Selected Answer: D
same to lessons learned, the ultra purpose is to prevent the incident from happening again.
upvoted 3 times
...
Thavee
1 year, 2 months ago
Selected Answer: D
D. Prevent the re-occurrence. Which of the following is the MOST important reason to document information security incidents that are reported across the organization? Question is that what is/are the reason (s) of identify unmitigated risk --> for further protections? for better prevention?, for better corrections? Are the above future protections/prevention/corrections considered prevent the recurrence?
upvoted 2 times
...
xcjxcj
1 year, 3 months ago
Selected Answer: D
Similarly to lesson learned, purpose is to prevent future recurrence. If doctor failed to save life, you cannot say his purpose is not saving life. Same applies to lesson learned.
upvoted 2 times
...
HA2024
1 year, 5 months ago
It's a matter of mitigating risks rather than preventing their recurrence. during the incident response In a Root Cause Analysis (RCA) focused on a malware incident, discovering and addressing the entry point is a form of mitigation. However, it's important to recognize that this mitigation doesn't ensure absolute prevention of future incidents, as new entry points may be exploited over time. Cybersecurity often involves a layered approach, combining preventive measures, detection strategies, and ongoing mitigation efforts to manage evolving risks in the dynamic threat landscape. C is correct!
upvoted 1 times
...
Uncle_Lucifer
1 year, 6 months ago
Selected Answer: C
How the hell can you prevent incidence recourrance? Thats impossible. You can get DDOS'd more than once. Social engineering attach can occur more than once. Come on fellows/mates --> C
upvoted 1 times
Thavee
1 year, 2 months ago
Awareness Training, Education, Standard enforcement, job descriptions, rules, and etc. How can you prevent yourself from getting the Covid-19 for the second time?
upvoted 1 times
...
...
Marcovic00
1 year, 7 months ago
Selected Answer: C
D is in C so i go with C
upvoted 2 times
...
Kunzle
1 year, 9 months ago
Selected Answer: D
The primary goal after any incident is to learn from it and take actions to ensure that similar incidents do not happen again
upvoted 2 times
...
oluchecpoint
1 year, 9 months ago
Selected Answer: C
C. Identify unmitigated risk. Documenting information security incidents across the organization is crucial for identifying unmitigated risks. This documentation helps in understanding the nature and scope of security incidents, which, in turn, allows organizations to identify areas where their security measures may be insufficient or ineffective. By identifying unmitigated risks, organizations can take proactive steps to improve their security posture, prevent future incidents, and enhance overall security.
upvoted 2 times
...
afc1019
1 year, 10 months ago
Selected Answer: C
C. Identify unmitigated risk. Identifying unmitigated risk is the MOST important reason to document information security incidents. It allows the organization to gain insights into vulnerabilities and weaknesses that may lead to incidents and helps in implementing necessary controls to mitigate those risks. While preventing incident recurrence (Option D) is a valid goal, it is secondary to the primary purpose of identifying and addressing unmitigated risk through incident documentation.
upvoted 1 times
...
Goseu
1 year, 11 months ago
Selected Answer: D
D. Prevent incident recurrence.
upvoted 1 times
...
richck102
1 year, 11 months ago
Selected Answer: B
B. Evaluate the security posture of the organization.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...