nerdexam
Isaca

CISM · Question #911

Which of the following would BEST enable an organization to monitor changes in its risk profile?

The correct answer is C. Implement a SIEM system. A SIEM (Security Information and Event Management) system aggregates, correlates, and analyzes security events from across the entire IT environment in near real-time. This continuous visibility allows the organization to detect shifts in its security posture and risk profile…

Submitted by haru.x· Apr 18, 2026Information Risk Management

Question

Which of the following would BEST enable an organization to monitor changes in its risk profile?

Options

  • AImplement a network intrusion detection system (IDS).
  • BSubscribe to third-party security threat intelligence.
  • CImplement a SIEM system.
  • DEstablish security policies for system users.

How the community answered

(17 responses)
  • A
    12% (2)
  • B
    6% (1)
  • C
    76% (13)
  • D
    6% (1)

Explanation

A SIEM (Security Information and Event Management) system aggregates, correlates, and analyzes security events from across the entire IT environment in near real-time. This continuous visibility allows the organization to detect shifts in its security posture and risk profile as they happen. An IDS (A) only monitors network traffic for known attack signatures. Third-party threat intelligence (B) is external and doesn't reflect internal posture changes. Security policies (D) establish rules but provide no monitoring capability.

Topics

#Risk monitoring#SIEM#Continuous monitoring#Risk management

Community Discussion

No community discussion yet for this question.

Full CISM Practice