PECB Certified ISO/IEC 27035 Lead Incident Manager ISO-IEC-27035-Lead-Incident-Manager Question # 10 Topic 2 Discussion

PECB Certified ISO/IEC 27035 Lead Incident Manager ISO-IEC-27035-Lead-Incident-Manager Question # 10 Topic 2 Discussion

ISO-IEC-27035-Lead-Incident-Manager Exam Topic 2 Question 10 Discussion:
Question #: 10
Topic #: 2

During the 'detect and report' phase of incident management at TechFlow, the incident response team began collecting detailed threat intelligence and conducting vulnerability assessments related to these login attempts. Additionally, the incident response team classified a series of unusual login attempts as a potential security incident and distributed initial reports to the incident coordinator. Is this approach correct?


A.

Yes, because classifying events as information security incidents is essential during this phase


B.

No, because collecting detailed information about threats and vulnerabilities should occur in later phases


C.

No, because information security incidents cannot yet be classified as information security incidents in this phase


Get Premium ISO-IEC-27035-Lead-Incident-Manager Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.