Certified Information Security Manager (CISM) — Question 797
Which of the following BEST facilitates effective incident response testing?
Answer options
- A. Including all business units in testing
- B. Testing after major business changes
- C. Simulating realistic test scenarios
- D. Reviewing test results quarterly
Correct answer: C
Explanation
Option C is correct because simulating realistic test scenarios allows organizations to evaluate their incident response in a context that closely resembles actual events. The other options, while useful in their own right, do not specifically enhance the realism of the testing scenarios, which is crucial for effective incident response preparation.