LEAD-IMPLEMENTER · Question #102
Once they made sure that the attackers do not have access in their system, the security administrators decided to proceed with the forensic analysis. They concluded that their access security system…
The correct answer is A. Acceptable, the incident management policy may be integrated into the overall information. See the full explanation below for the reasoning.
Question
Once they made sure that the attackers do not have access in their system, the security administrators decided to proceed with the forensic analysis. They concluded that their access security system was not designed tor threat detection, including the detection of malicious files which could be the cause of possible future attacks. Based on these findings. Texas H$H inc, decided to modify its access security system to avoid future incidents and integrate an incident management policy in their Information security policy that could serve as guidance for employees on how to respond to similar incidents. Based on the scenario above, answer the following question:
Texas M&H Inc. decided to integrate the incident management policy to the existent information security policy. How do you define this situation?
Options
- AAcceptable, the incident management policy may be integrated into the overall information
- BAcceptable, but only if the incident management policy addresses environmental, or health and
- CUnacceptable, the incident management policy should be drafted as a separate document in
How the community answered
(29 responses)- A79% (23)
- B7% (2)
- C14% (4)
Community Discussion
No community discussion yet for this question.