IsacaIsaca
CISM · Question #366
CISM Question #366: Real Exam Question with Answer & Explanation
Sign in or unlock CISM to reveal the answer and full explanation for question #366. The question stem and answer options stay visible for context.
Submitted by olafpl· Apr 18, 2026Information Security Incident Management
Question
An organization successfully responded to an information security incident. However, the information security manager learned that some of the steps specified in the incident management procedures were not taken by the response team. What should be the information security manager's FIRST step?
Options
- AInterview the incident response team.
- BReview the incident management procedures.
- CProvide additional training to the incident response team.
- DRemove the steps from the incident management procedures.
Unlock CISM to see the answer
You've previewed enough free CISM questions. Unlock CISM for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Incident Management Process#Post-Incident Review#Procedure Adherence#Process Improvement