nerdexam
Isaca

CCAK · Question #76

Which plan will guide an organization on how to react to a security incident that might occur on the organization's systems, or that might be affecting one of their service providers?

The correct answer is A. Incident Response Plans. An Incident Response Plan (IRP) is the established, industry-standard document that defines how an organization detects, responds to, and recovers from security incidents - whether originating internally or from a third-party provider such as a CSP. The IRP typically covers…

Cloud Risk Management

Question

Which plan will guide an organization on how to react to a security incident that might occur on the organization's systems, or that might be affecting one of their service providers?

Options

  • AIncident Response Plans
  • BSecurity Incident Plans
  • CUnexpected Event Plans
  • DEmergency Incident Plans

How the community answered

(19 responses)
  • A
    89% (17)
  • B
    5% (1)
  • C
    5% (1)

Explanation

An Incident Response Plan (IRP) is the established, industry-standard document that defines how an organization detects, responds to, and recovers from security incidents - whether originating internally or from a third-party provider such as a CSP. The IRP typically covers roles, responsibilities, communication protocols, escalation paths, and recovery steps. Options B, C, and D ('Security Incident Plans,' 'Unexpected Event Plans,' 'Emergency Incident Plans') are not recognized standard terms in cybersecurity frameworks such as NIST SP 800-61, ISO 27035, or ISACA guidance.

Topics

#Incident Response#Security Incident#Cloud Security#Risk Management

Community Discussion

No community discussion yet for this question.

Full CCAK Practice