QuestionQ608

Incident Management

The PRIMARY goal of conducting a post-incident review for an information security incident is to:

  • A minimize impact.
  • B determine the impact.
  • C prevent recurrence.
  • D update the risk profile.
Explanation

A post-incident review identifies root causes, control gaps, and lessons learned so corrective actions can prevent similar incidents from recurring.

Community Discussion

No comments yet. Be the first to start the discussion!