nerdexam
Isaca

CISM · Question #984

Which of the following would be MOST important to include in communications to customers impacted by an information security incident?

The correct answer is A. Details of the type of data exposed. Affected customers need to know what type of data was exposed so they can take appropriate protective action - for example, monitoring their credit if financial data was compromised, or changing passwords if credentials were leaked. This information is directly actionable for…

Submitted by jian89· Apr 18, 2026Information Security Incident Management

Question

Which of the following would be MOST important to include in communications to customers impacted by an information security incident?

Options

  • ADetails of the type of data exposed
  • BCosts of the incident to the organization
  • CTechnical information related to the incident
  • DIdentities of the attackers

How the community answered

(56 responses)
  • A
    82% (46)
  • B
    4% (2)
  • C
    4% (2)
  • D
    11% (6)

Explanation

Affected customers need to know what type of data was exposed so they can take appropriate protective action - for example, monitoring their credit if financial data was compromised, or changing passwords if credentials were leaked. This information is directly actionable for the impacted individuals. The organization's financial costs (B) are irrelevant to customers. Technical attack details (C) are not actionable for customers and could aid future attackers. Attacker identities (D) are often unknown and provide no practical value to affected individuals.

Topics

#Incident Communication#Customer Notification#Data Breach#Incident Response

Community Discussion

No community discussion yet for this question.

Full CISM Practice