When recommending a preventive control against cross-site scripting in web applications, an information security manager is MOST likely to suggest:
Correct Answer: C
Question 172
What should be an information security manager's FIRST step when developing a business case for a new intrusion detection system (IDS) solution?
Correct Answer: C
Question 173
The PRIMARY objective of performing a post-incident review is to:
Correct Answer: D
Explanation = The PRIMARY objective of performing a post-incident review is to identify the root cause of the incident, which is the underlying factor or condition that enabled the incident to occur. Identifying the root cause helps to prevent or mitigate future incidents, as well as to improve the incident response process. Re-evaluating the impact of incidents, identifying vulnerabilities, and identifying control improvements are secondary objectives of a post-incident review, which are derived from the root cause analysis. References = CISM Review Manual, 16th Edition, page 3061; CISM Review Questions, Answers & Explanations Manual, 10th Edition, page 1512 The primary objective of performing a post-incident review is to identify the root cause of the incident. After an incident has occurred, the post-incident review process involves gathering and analyzing evidence to determine the cause of the incident. This analysis will help to identify both the underlying vulnerability that allowed the incident to occur, as well as any control improvements that should be implemented to prevent similar incidents from occurring in the future. Additionally, the post-incident review process can also be used to re-evaluate the impact of the incident, as well as any potential implications for the organization.
Question 174
Rn information security team is investigating an alleged breach of an organization's network. Which of the following would be the BEST single source of evidence to review?
Correct Answer: A
Question 175
Which of the following is the MOST effective method to prevent a SQL injection in an employee portal?