The Correct Answer is (D) to provide effective incident mitigation.
Rationale:
A. To provide a single point of contact for critical incidents is incorrect cause that role would fall on someone with an authority to make decisions. The IR team simply carries out those decisions and provides the information to the point of contact to make those decisions.
B. To provide a risk assessment for zero-day vulnerabilities is incorrect because this is done by: Risk managers, Security professionals, IT professionals, Subject matter experts
C. To provide a business impact analysis (BIA) incorrect cause BIA is done by BCP pros, info pros, risk management and SME of business units. Not by the IR team.
Seems to me it's concerned with critical incidents only
upvoted 1 times
...
...
This section is not available anymore. Please use the main Exam Page.CISM Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
xcjxcj
9 months, 2 weeks agorichck102
1 year, 5 months agorichck102
1 year, 5 months agodark_3k03r
1 year, 7 months agoMyKasala
1 year, 10 months agoaokisan
1 year, 11 months agocosmo4ng
1 year, 8 months ago