CISM · Question #471
A health care organization has been informed of a breach at a third-party vendor. Which of the following should the organization's information security manager do FIRST?
The correct answer is B. Assess the impact.. The first step after learning about a third-party breach is to assess the impact on the organization. This includes determining whether sensitive data was compromised, how critical the affected vendor's services are, and what risks this poses to business operations. Understanding
Question
A health care organization has been informed of a breach at a third-party vendor. Which of the following should the organization's information security manager do FIRST?
Options
- AReview the relevant contract clauses.
- BAssess the impact.
- CNotify senior management.
- DNotify relevant regulatory bodies.
How the community answered
(25 responses)- A8% (2)
- B72% (18)
- C4% (1)
- D16% (4)
Explanation
The first step after learning about a third-party breach is to assess the impact on the organization. This includes determining whether sensitive data was compromised, how critical the affected vendor's services are, and what risks this poses to business operations. Understanding the impact helps drive the appropriate response, including contract reviews, regulatory notifications, and senior management briefings.
Topics
Community Discussion
No community discussion yet for this question.