nerdexam
Isaca

CISM · Question #477

Which of the following is MOST important to enable the escalation of security incidents to appropriate stakeholders?

The correct answer is B. Severity criteria. Severity criteria are the most important factor in ensuring that security incidents are escalated to the appropriate stakeholders. These criteria define the impact, urgency, and required response level for incidents, helping ensure that critical threats receive immediate…

Submitted by saadiq_pk· Apr 18, 2026Information Security Incident Management

Question

Which of the following is MOST important to enable the escalation of security incidents to appropriate stakeholders?

Options

  • ARisk acceptance criteria
  • BSeverity criteria
  • CRoot cause analysis
  • DRisk appetite

How the community answered

(31 responses)
  • A
    3% (1)
  • B
    94% (29)
  • D
    3% (1)

Explanation

Severity criteria are the most important factor in ensuring that security incidents are escalated to the appropriate stakeholders. These criteria define the impact, urgency, and required response level for incidents, helping ensure that critical threats receive immediate attention. While risk acceptance, root cause analysis, and risk appetite play roles in risk management, they do not directly enable timely and appropriate incident escalation like severity criteria do.

Topics

#Incident Management#Incident Escalation#Severity Criteria#Incident Response

Community Discussion

No community discussion yet for this question.

Full CISM Practice