Certified Information Systems Auditor (CISA) — Question 493
The members of an emergency incident response team should be:
Answer options
- A. assigned at the time of each incident.
- B. appointed by the CISO.
- C. restricted to IT personnel.
- D. selected from multiple departments.
Correct answer: D
Explanation
The correct answer is D, as an effective incident response team requires diverse expertise that can be found across multiple departments. Options A and B suggest a limited or centralized approach that may not provide the necessary skills or perspectives, while C restricts the team to IT personnel only, which can hinder the team's overall effectiveness.