Question 1
An organization experienced a data breach and followed its incident response plan. Later it was discovered that the plan was incomplete, omitting a requirement to report the incident to the relevant authorities. In addition to establishing an updated incident response plan, which of the following would be MOST helpful in preventing a similar occurrence?
Question 2
Which of the following is MOST important to verify when reviewing the effectiveness of response to an information security incident?
Question 3
When security policies are strictly enforced, the initial impact is that:
Question 4
What is the PRIMARY objective of a post-event review in incident response?
Question 5
The PRIMARY purpose of a risk assessment is to enable business leaders to:
