Certified Information Security Manager (CISM) — Question 32
Which of the following is the MAIN reason for integrating an organization's incident response plan with its business continuity process?
Answer options
- A. Incidents can escalate into disasters needing proper response
- B. Recovery time objectives (RTOs) need to be determined
- C. Incidents will be reported more timely when categorized as a disaster
- D. Integration of the plan will reduce resource costs to the organization
Correct answer: A
Explanation
The correct answer is A, as incidents can develop into larger disasters, making it crucial to have a coordinated response plan in place. Options B, C, and D, while important, do not address the immediate need for effective response mechanisms to prevent escalation into major crises.