As part of incident response activities, the BEST time to begin the recovery process is after:
Which of the following should be done FIRST once a cybersecurity attack has been confirmed?
The MAIN benefit of implementing a data loss prevention (DLP) solution is to:
Which of the following is the MOST effective way to detect security incidents?
An organization is strategizing on how to improve security awareness. Which of the following is MOST important to consider when developing this strategy?
Which of the following is the BEST approach to make strategic information security decisions?
Which of the following would BEST guide the development and maintenance of an information security program?
To optimize the implementation of information security governance in an organization, an information security manager should:
An organization has introduced a new bring your own device (BYOD) program. The security manager has determined that a small number of employees are utilizing free cloud storage services to store company data through their mobile devices. Which of the following is the MOST effective course of action?
When developing an asset classification program, which of the following steps should be completed FIRST?
Which type of test is MOST effective in communicating the roles of end users to support timely identification and response to information security incidents?
Which of the following should be the PRIMARY objective when establishing a new information security program?
Which of the following is the BEST indication of a mature information security program?
What should be the information security manager’s FIRST step when updating an information security program?
Which of the following is the GREATEST benefit of using AI tools in security operations?
Which of the following is MOST important in increasing the effectiveness of incident responders?
Which of the following is the MOST important reason to involve external forensics experts in evidence collection when responding to a major security breach?
Which of the following would be MOST effective in gaining senior management approval of security investments in network infrastructure?
Meeting which of the following security objectives BEST ensures that information is protected against unauthorized disclosure?
Which of the following is MOST important to maintain integration among the incident response plan, business continuity plan (BCP). and disaster recovery plan (DRP)?