CCAK · Question #76
Which plan will guide an organization on how to react to a security incident that might occur on the organization's systems, or that might be affecting one of their service providers?
The correct answer is A. Incident Response Plans. An Incident Response Plan (IRP) is the established, industry-standard document that defines how an organization detects, responds to, and recovers from security incidents - whether originating internally or from a third-party provider such as a CSP. The IRP typically covers…
Question
Which plan will guide an organization on how to react to a security incident that might occur on the organization's systems, or that might be affecting one of their service providers?
Options
- AIncident Response Plans
- BSecurity Incident Plans
- CUnexpected Event Plans
- DEmergency Incident Plans
How the community answered
(19 responses)- A89% (17)
- B5% (1)
- C5% (1)
Explanation
An Incident Response Plan (IRP) is the established, industry-standard document that defines how an organization detects, responds to, and recovers from security incidents - whether originating internally or from a third-party provider such as a CSP. The IRP typically covers roles, responsibilities, communication protocols, escalation paths, and recovery steps. Options B, C, and D ('Security Incident Plans,' 'Unexpected Event Plans,' 'Emergency Incident Plans') are not recognized standard terms in cybersecurity frameworks such as NIST SP 800-61, ISO 27035, or ISACA guidance.
Topics
Community Discussion
No community discussion yet for this question.