Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

ISO-IEC-27035-Lead-Incident-Manager Exam Dumps - PECB Certified ISO/IEC 27035 Lead Incident Manager

Go to page:
Question # 4

Which document provides guidelines for planning and preparing for incident response and for learning lessons from the incident response process?

A.

ISO/IEC 27035-1

B.

ISO/IEC 27035-2

C.

ISO/IEC 27037

Full Access
Question # 5

What is the purpose of a gap analysis?

A.

To identify the differences between current processes and company policies

B.

To determine the steps to achieve a desired future state from the current state

C.

To assess risks associated with identified gaps in current practices compared to best practices

Full Access
Question # 6

What is the primary focus of internal exercises in information security incident management?

A.

Testing inter-organizational communication

B.

Involving external organizations to assess collaboration

C.

Evaluating the readiness of the incident response team

Full Access
Question # 7

During the 'detect and report' phase of incident management at TechFlow, the incident response team began collecting detailed threat intelligence and conducting vulnerability assessments related to these login attempts. Additionally, the incident response team classified a series of unusual login attempts as a potential security incident and distributed initial reports to the incident coordinator. Is this approach correct?

A.

Yes, because classifying events as information security incidents is essential during this phase

B.

No, because collecting detailed information about threats and vulnerabilities should occur in later phases

C.

No, because information security incidents cannot yet be classified as information security incidents in this phase

Full Access
Question # 8

What can documenting recovery options and associated data loss/recovery timeframes assist with during incident response?

A.

Minimizing the impact on system performance

B.

Making informed decisions about containment and recovery

C.

Accelerating the incident response process

Full Access
Go to page: