PECB Certified ISO/IEC 27001 : 2022 Lead Implementer exam ISO-IEC-27001-Lead-Implementer Question # 78 Topic 8 Discussion

PECB Certified ISO/IEC 27001 : 2022 Lead Implementer exam ISO-IEC-27001-Lead-Implementer Question # 78 Topic 8 Discussion

ISO-IEC-27001-Lead-Implementer Exam Topic 8 Question 78 Discussion:
Question #: 78
Topic #: 8

Once they made sure that the attackers do not have access in their system, the security administrators decided to proceed with the forensic analysis. They concluded that their access security system was not designed tor threat detection, including the detection of malicious files which could be the cause of possible future attacks.

Based on these findings. Texas H$H inc, decided to modify its access security system to avoid future incidents and integrate an incident management policy in their Information security policy that could serve as guidance for employees on how to respond to similar incidents.

Based on the scenario above, answer the following question:

Texas M&H Inc. decided to integrate the incident management policy to the existent information security policy. How do you define this situation?


A.

Acceptable, the incident management policy may be integrated into the overall information security policy of the organization


B.

Acceptable, but only if the incident management policy addresses environmental, or health and safety issues


C.

Unacceptable, the incident management policy should be drafted as a separate document in order to be clear and effective


Get Premium ISO-IEC-27001-Lead-Implementer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.