nerdexam
Isaca

CISM · Question #190

An incident response team learns that stakeholders' private data may have been breached. Who should the incident response team communicate this information to FIRST?

The correct answer is D. Data owner. The incident response team should first communicate the potential breach of stakeholders' private data to the data owner. The data owner is responsible for the data and is best positioned to make informed decisions about the next steps, including notifying senior management, enga

Submitted by jaden.t· Apr 18, 2026Information Security Incident Management

Question

An incident response team learns that stakeholders’ private data may have been breached. Who should the incident response team communicate this information to FIRST?

Options

  • ASenior management
  • BRegulatory authority
  • CDatabase administrator (DBA)
  • DData owner

How the community answered

(33 responses)
  • A
    15% (5)
  • B
    6% (2)
  • C
    3% (1)
  • D
    76% (25)

Explanation

The incident response team should first communicate the potential breach of stakeholders' private data to the data owner. The data owner is responsible for the data and is best positioned to make informed decisions about the next steps, including notifying senior management, engaging with regulatory authorities, and managing the incident response.

Topics

#Incident Communication#Data Owner#Data Breach Response#Roles and Responsibilities

Community Discussion

No community discussion yet for this question.

Full CISM Practice