CISM · Question #902
Of the following, who is accountable for ensuring the incident response plan is tested?
The correct answer is D. Information security manager. The information security manager is accountable for ensuring the incident response plan is tested because they own the information security program, of which the IR plan is a key component. Accountability means being answerable for outcomes - the security manager ensures…
Question
Of the following, who is accountable for ensuring the incident response plan is tested?
Options
- ABusiness process owner
- BBusiness continuity manager
- CIncident response team members
- DInformation security manager
How the community answered
(31 responses)- A3% (1)
- B3% (1)
- C6% (2)
- D87% (27)
Explanation
The information security manager is accountable for ensuring the incident response plan is tested because they own the information security program, of which the IR plan is a key component. Accountability means being answerable for outcomes - the security manager ensures testing happens, even if others execute it. The business process owner (A) is accountable for business assets, not the IR program. The business continuity manager (B) manages BCPs, which are related but distinct. IR team members (C) participate in testing but are responsible for execution, not for ensuring testing occurs at the program governance level.
Topics
Community Discussion
No community discussion yet for this question.